Information security, cybersecurity and privacy protection — Information security management systems...
ISO/IEC 27000:2018 provides the overview of information security management systems (ISMS). It also provides terms and definitions commonly used in the ISMS family of standards. This document is applicable to all types and sizes of organization (e.g. commercial enterprises, government agencies, not-for-profit organizations).
The terms and definitions provided in this document
- cover commonly…
Systems and software engineering — Life cycle profiles for very small entities (VSEs) — Part 5-3: Se...
1.1 Fields of application
These Service Delivery guidelines are applicable to Very Small Entities (VSEs). A VSE is an enterprise, an organization, a department or a project having up to 25 people.
ISO/IEC TR 29110-5-3:2018 provides guidance to manage a set of services delivered to customers. The VSE can act as an internal service provider (providing services internal to the VSE) or as an external…
Information security, cybersecurity and privacy protection – Guidelines for protection of personally...
This document establishes commonly accepted control objectives, controls and guidelines for implementing measures to protect Personally Identifiable Information (PII) in line with the privacy principles in ISO/IEC 29100 for the public cloud computing environment.
In particular, this document specifies guidelines based on ISO/IEC 27002, taking into consideration the regulatory requirements for the…
This proposed standard is for anybody who creates or help create legal and related documents. It builds, and relies, on the foundation for plain language in WD 24495-1, Plain Language — Part 1: Governing Principles and Guidelines. This standard, Plain Language — Part 2 Legal Writing and Drafting, will add guidance and techniques to help authors make sure that people affected by legal and related…
Financial services — Universal financial industry message scheme — Part 7: Registration
ISO 20022-7:2013 specifies the responsibilities of the following bodies, which are involved in the registration and maintenance of the ISO 20022 Repository.
The Registration Authority (RA) is the operating authority responsible for the registration and maintenance of the ISO 20022 Repository and for providing access to the information described in ISO 20022-1:2013. The RA is assisted by…
Information technology — Governance of data — Part 1: Application of ISO/IEC 38500 to the governance...
ISO/IEC 38505-1:2017 provides guiding principles for members of governing bodies of organizations (which can comprise owners, directors, partners, executive managers, or similar) on the effective, efficient, and acceptable use of data within their organizations by
- applying the governance principles and model of ISO/IEC 38500 to the governance of data,
- assuring stakeholders that, if the…
Information technology — Keyboard layouts for text and office systems — Part 1: General principles g...
ISO/IEC 9995 defines a framework for the layout of all alphanumeric and numeric keyboards across the widest spectrum of today's and upcoming applications using keyboards. The functions to be performed by keyboards are grouped into three categories that correspond to the main physical sections of the keyboard.
Application of ISO/IEC 9995 in the design of keyboards will provide the user with a…
Information technology — Business operational view — Part 8: Identification of privacy protection re...
ISO/IEC 15944-8:2012 has been developed to support modelling generic international requirements for identifying and providing privacy protection of personal information throughout any kind of information and communications technology (ICT) based business transaction where the individual has the role of a buyer. It provides users and designers with a methodology and tools addressing requirements…
Sustainability information — Part 2: Principles and requirements for verification processes
This document specifies requirements for the verification process of quantitative and qualitative sustainability information, including reporting on environmental, social, governance (ESG) and other sustainability aspects.
It applies to the set of rules and procedures for carrying out verification by providing elements of a verification programme, such as process, evidence-gathering activities,…
Sustainability information — Part 1: General principles and requirements for validation and verifica...
This document specifies general principles and requirements for the validation and verification process of sustainability information, including reporting on environmental, social, governance (ESG) and other sustainability aspects. It provides general principles and requirements for determining the categorization of quantitative and qualitative information.
These principles and requirements…