Historical

ISO/IEC 27009:2016

Information technology - Security techniques - Sector-specific application of ISO/IEC 27001 - Requirements


ISO/IEC 27009:2016 defines the requirements for the use of ISO/IEC 27001 in any specific sector (field, application area or market sector). It explains how to include requirements additional to those in ISO/IEC 27001, how to refine any of the ISO/IEC 27001 requirements, and how to include controls or control sets in addition to ISO/IEC 27001:2013, Annex A.

It ensures that additional or refined requirements are not in conflict with the requirements in ISO/IEC 27001.

It is applicable to those involved in producing sector-specific standards that relate to ISO/IEC 27001.


CONTENT PROVIDER
International Organization for Standardization [iso]

Others Also Bought
Information technology - Security techniques - Code of practice for information security controls based on ISO/IEC ...
Information technology - Security techniques - Governance of information security
Information technology - Security techniques - Systems Security Engineering - Capability Maturity Model® (SSE- ...
Document History
Revised By:
Included in Packages
This standard is not included in any packages.
Amendments & Corrections
We have no amendments or corrections for this standard.