removed emoji from filenames, Obsidian changed all relevant links
This commit is contained in:
parent
d316285a74
commit
68f1c38681
638 changed files with 710 additions and 3176 deletions
|
|
@ -1,13 +0,0 @@
|
|||
# Introduction for Organizational Structures
|
||||
|
||||
Identifying information security requirements, according to ISO 27000:2018 C.4.5.2:
|
||||
|
||||
Information security requirements can be identified through an understanding of the following:
|
||||
|
||||
a) identified information assets and their value;
|
||||
|
||||
b) business needs for information processing, storage and communication;
|
||||
|
||||
c) legal, regulatory, and contractual requirements.
|
||||
|
||||
Conducting a methodical assessment of the risks associated with the organization’s information assets involves analysing threats to information assets, vulnerabilities to and the likelihood of a threat materializing to information assets, and the potential impact of any information security incident on information assets. The expenditure on relevant controls is expected to be proportionate to the perceived business impact of the risk materializing.
|
||||
Loading…
Add table
Add a link
Reference in a new issue