Historical
SS-ISO/IEC 27004:2010
Information technology - Security techniques - Information security management - Measurement (ISO/IEC 27004:2009, IDT) (Swedish Standard)
This International Standard provides guidance on the development and use of measures and measurement in order to assess the effectiveness of an implemented information security management system (ISMS) and controls or groups of controls, as specified in ISO/IEC 27001.
This International Standard is applicable to all types and sizes of organization.
NOTE This document uses the verbal forms for the expression of provisions (e.g. “shall”, “shall not”, “should”, “should not”, “may”, “need not”, “can” and “cannot”) that are specified in the ISO/IEC Directives, Part 2, 2004, Annex H. See also ISO/IEC 27000:2009, Annex A.
Content Provider
Swedish Standards Institute [sis]