| |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
5.3 Business Continuity Continuing business as usual, in the face of unusual conditions requires forethought. The reality is that there is a mountain of work in putting together a plan of response. The question is where to start? The answer is ISO 17799. The Industry Standards Association is the same international Organization who brought us the OSI (Open Standards Interconnect) model that we use in networking. Specifically ISO 17799 is a comprehensive set of controls created with best practices for information security in mind. The first version of it did not live long, however, with version two published in May 1999, this standard is at least being used as a guideline. Note that ISO 17799 has several sub sections including:
As stated above, even using ISO 17799 as a guideline is not a small effort. A sample of what is involved is available as a PDF found in the footnote425.
__________________ 425. http://www.iso17799software.com/policies.exe
Home - Table Of Contents - Contact Us CertiGuide for Security+ (http://www.CertiGuide.com/secplus/) on CertiGuide.com Version 1.0 - Version Date: November 15, 2004 Adapted with permission from a work created by Tcat Houser et al. CertiGuide.com Version © Copyright 2004 Charles M. Kozierok. All Rights Reserved. Not responsible for any loss resulting from the use of this site. | ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||