ISO/IEC TS 27008:2019

International Standard   Current Edition · Approved on 14 January 2019

Information technology — Security techniques — Guidelines for the assessment of information security controls

ISO/IEC TS 27008:2019 Files

English 91 Pages
Current Edition
102.37 BHD

ISO/IEC TS 27008:2019 Scope

This document provides guidance on reviewing and assessing the implementation and operation of information security controls, including the technical assessment of information system controls, in compliance with an organization's established information security requirements including technical compliance against assessment criteria based on the information security requirements established by the organization.

This document offers guidance on how to review and assess information security controls being managed through an Information Security Management System specified by ISO/IEC 27001.

It is applicable to all types and sizes of organizations, including public and private companies, government entities, and not-for-profit organizations conducting information security reviews and technical compliance checks.

Best Sellers

GSO 150-2:2013
 
Gulf Standard
Expiration dates for food products - Part 2 : Voluntary expiration dates
BH GSO 150-2:2015
GSO 150-2:2013 
Bahraini Standard
Expiration dates for food products - Part 2 : Voluntary expiration dates
BH GSO 2055-1:2016
GSO 2055-1:2015 
Bahraini Technical Regulation
HALAL FOOD - Part 1 : General Requirements
GSO 2055-1:2015
 
Gulf Technical Regulation
HALAL FOOD - Part 1 : General Requirements

Recently Published

ISO 19881:2025
 
International Standard
Gaseous hydrogen — Land vehicle fuel containers
ISO 19396-2:2025
 
International Standard
Paints and varnishes — Determination of pH value — Part 2: pH sensors with ISFET technology
ISO 13503-8:2025
 
International Standard
Oil and gas industries including lower carbon energy — Completion fluids and materials — Part 8: Measurement of properties of coated proppants used in hydraulic fracturing
ISO 13400-2:2025
 
International Standard
Road vehicles — Diagnostic communication over Internet Protocol (DoIP) — Part 2: Transport protocol and network layer services