Standard

NEK ISO/IEC 21827:2008

Published
Preview Preview is not available

Corrigendums and amendments are bought separately.

Language
Services

Abstract

ISO/IEC 21827:2008 specifies the Systems Security Engineering - Capability Maturity Model® (SSE-CMM®), which describes the essential characteristics of an organization's security engineering process that must exist to ensure good security engineering. ISO/IEC 21827:2008 does not prescribe a particular process or sequence, but captures practices generally observed in industry. The model is a standard metric for security engineering practices covering the following: the entire life cycle, including development, operation, maintenance and decommissioning activities;the whole organization, including management, organizational and engineering activities;concurrent interactions with other disciplines, such as system, software, hardware, human factors and test engineering; system management, operation and maintenance;interactions with other organizations, including acquisition, system management, certification, accreditation and evaluation.The objective is to facilitate an increase of maturity of the security engineering processes within the organization. The SSE-CMM® is related to other CMMs which focus on different engineering disciplines and topic areas and can be used in combination or conjunction with them.

Document information

  • Standard from NEK
  • Published:
  • Edition: 2.0
  • Version: 1
  • Document type: NAT
  • Pages
  • ICS 35.030
  • National Committee ISO/IEC JTC 1/SC 27

Product Relations

  • Adopted from: ISO/IEC 21827:2008