Standard

ISO/IEC 27005:2008

Withdrawn

Note: This standard has a new edition: ISO/IEC 27005:2022

Corrigendums and amendments are bought separately.

Language
Services

Abstract

ISO/IEC 27005:2008 provides guidelines for information security risk management. It supports the general concepts specified in ISO/IEC 27001 and is designed to assist the satisfactory implementation of information security based on a risk management approach. Knowledge of the concepts, models, processes and terminologies described in ISO/IEC 27001 and ISO/IEC 27002 is important for a complete understanding of ISO/IEC 27005:2008. ISO/IEC 27005:2008 is applicable to all types of organizations (e.g. commercial enterprises, government agencies, non-profit organizations) which intend to manage risks that could compromise the organization's information security.

Document information

  • Standard from ISO
  • Published:
  • Withdrawn:
  • Expires:
  • Edition: 1
  • Version: 1
  • Document type: IS
  • Pages
  • ICS 03.100.70
  • ICS 35.030
  • ISO TC ISO/IEC JTC 1/SC 27

Product Relations

Product life cycle