DIN EN ISO IEC 27041-2016 Information technology - Security techniques - Guidance on assuring suitability and adequacy of incident investigative method (ISO IEC 27041 2015) German .pdf
《DIN EN ISO IEC 27041-2016 Information technology - Security techniques - Guidance on assuring suitability and adequacy of incident investigative method (ISO IEC 27041 2015) German .pdf》由会员分享,可在线阅读,更多相关《DIN EN ISO IEC 27041-2016 Information technology - Security techniques - Guidance on assuring suitability and adequacy of incident investigative method (ISO IEC 27041 2015) German .pdf(28页珍藏版)》请在麦多课文档分享上搜索。
1、December 2016 English price group 14No part of this translation may be reproduced without prior permission ofDIN Deutsches Institut fr Normung e. V., Berlin. Beuth Verlag GmbH, 10772 Berlin, Germany,has the exclusive right of sale for German Standards (DIN-Normen).ICS 35.030!%Z“2599155www.din.deDIN
2、EN ISO/IEC 27041Information technology Security techniques Guidance on assuring suitability and adequacy of incident investigative method (ISO/IEC 27041:2015);English version EN ISO/IEC 27041:2016,English translation of DIN EN ISO/IEC 27041:2016-12Informationstechnik ITSicherheitsverfahren Leitfaden
3、 zur Sicherung der Eignung und Angemessenheit von VorfallUntersuchungsmethoden (ISO/IEC 27041:2015);Englische Fassung EN ISO/IEC 27041:2016,Englische bersetzung von DIN EN ISO/IEC 27041:2016-12Technologies de linformation Techniques de scurit Directives sur la faon dassurer laptitude lemploi et ladq
4、uation dune mthode dinvestigation dincident (ISO/IEC 27041:2015);Version anglaise EN ISO/IEC 27041:2016,Traduction anglaise de DIN EN ISO/IEC 27041:2016-12www.beuth.deDocument comprises 28 pagesDTranslation by DIN-Sprachendienst.In case of doubt, the German-language original shall be considered auth
5、oritative.01.17 DIN EN ISO/IEC 27041:2016-12 2 A comma is used as the decimal marker. National foreword This document (EN ISO/IEC 27041:2016) has been prepared by Joint Technical Committee ISO/IEC JTC 1 “Information technology”, Subcommittee SC 27 “IT Security techniques” (Secretariat: DIN, Germany)
6、. Based on a decision of CEN/BT, ISO/IEC 27041:2015 has been submitted to the Unique Acceptance Procedure (UAP) and taken over as EN ISO/IEC 27041:2016 without any modification. The responsible German body involved in its preparation was DIN-Normenausschuss Informationstechnik und Anwendungen (DIN S
7、tandards Committee Information Technology and selected IT Applications), Working Committee NA 043-01-27-04 AK IT-Sicherheitsmanahmen und Dienste. EUROPEAN STANDARD NORME EUROPENNE EUROPISCHE NORM EN ISO/IEC 27041 August 2016 ICS 35.040 English Version Information technology - Security techniques - G
8、uidance on assuring suitability and adequacy of incident investigative method (ISO/IEC 27041:2015) Technologies de linformation - Techniques de scurit - Directives sur la faon dassurer laptitude lemploi et ladquation dune mthode dinvestigation dincident (ISO/IEC 27041:2015) Informationstechnik - IT-
9、Sicherheitsverfahren - Leitfaden zur Sicherung der Eignung und Angemessenheit von Vorfall-Untersuchungsmethoden(ISO/IEC 27041:2015) This European Standard was approved by CEN on 19 June 2016. CEN and CENELEC members are bound to comply with the CEN/CENELEC Internal Regulations which stipulate the co
10、nditions for giving this European Standard the status of a national standard without any alteration. Up-to-date lists and bibliographical references concerning such national standards may be obtained on application to the CEN-CENELEC Management Centre or to any CEN and CENELEC member. This European
11、Standard exists in three official versions (English, French, German). A version in any other language made by translation under the responsibility of a CEN and CENELEC member into its own language and notified to the CEN-CENELEC Management Centre has the same status as the official versions. CEN and
12、 CENELEC members are the national standards bodies of Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, P
13、oland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and United Kingdom. EUROPEAN COMMITTEE FOR STANDARDIZATION C OMIT EUROPEN DE NORMALISATION EUROPISCHES KOMITEE FR NORMUNG CEN-CENELEC Management Centre: Avenue Marnix 17, B-1000 Brussels 2016 CEN and CENELEC All rights
14、of exploitation in any form and by any means reserved worldwide for CEN and CENELEC national Members. Ref. No. EN ISO/IEC 27041:2016 E European foreword .3Introduction 51 Scope . 92 Normative references 93 Terms and definitions . 94 Symbols and abbreviated terms 125 Method development and assurance
15、125.1 Overview . 125.2 General principles . 125.3 General development and deployment model 125.4 Assurance stages 135.5 Requirements capture and analysis . 145.5.1 General principles of requirements 145.5.2 Functional Requirements 155.5.3 Verification of requirements . 155.6 Process Design . 155.6.1
16、 Overview 155.6.2 Tool Selection . 155.6.3 Uncertainty and risk evaluation 155.7 Process Implementation 165.7.1 Overview 165.7.2 Tool choice guidance for deployment 165.8 Process Verification . 165.8.1 General principles of verification . 165.8.2 Verification of processes 175.8.3 Verification of too
17、ls . 175.9 Process Validation . 175.9.1 General principles of validation . 175.9.2 Comprehensive validation 175.9.3 Sufficient validation . 175.9.4 Fully validated processes . 185.9.5 Failed validation 185.10 Confirmation 185.11 Deployment . 185.11.1 Tool choice 185.12 Review and Maintenance 186 Ass
18、urance Models .196.1 Overview . 196.2 In-house assurance 196.3 External assurance . 196.4 Mixed assurance . 197 Production of evidence for assurance .207.1 Overview . 207.2 Pre-validation preparation 207.3 Producing Evidence of Validation 207.4 Maintenance of Validation 207.5 Validation of Examinati
19、ons 207.6 Validation of Investigations . 21Annex A (informative) Examples .22Bibliography .26Contents PageForeword .4DIN EN ISO/IEC 27041:2016-12EN ISO/IEC 27041:2016 (E)2 European foreword The text of ISO/IEC 27041:2015 has been prepared by Technical Committee Committee ISO/IEC JTC 1 “Information t
20、echnology” of the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC) and has been taken over as EN ISO/IEC 27041:2016. This European Standard shall be given the status of a national standard, either by publication of an identical text or by e
21、ndorsement, at the latest by February 2017, and conflicting national standards shall be withdrawn at the latest by February 2017. Attention is drawn to the possibility that some of the elements of this document may be the subject of patent rights. CEN and/or CENELEC shall not be held responsible for
22、 identifying any or all such patent rights. According to the CEN-CENELEC Internal Regulations, the national standards organizations of the following countries are bound to implement this European Standard: Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, Former
23、 Yugoslav Republic of Macedonia, France, Germany, Greece, Hungary, Iceland, Ireland, Italy, Latvia, Lithuania, Luxembourg, Malta, Netherlands, Norway, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, Switzerland, Turkey and the United Kingdom. Endorsement notice The text of ISO/IEC 2704
24、1:2015 has been approved by CEN as EN ISO/IEC 27041:2016 without any modification. DIN EN ISO/IEC 27041:2016-12EN ISO/IEC 27041:2016 (E)3 ForewordISO (the International Organization for Standardization) and IEC (the International Electrotechnical Commission) form the specialized system for worldwide
- 1.请仔细阅读文档,确保文档完整性,对于不预览、不比对内容而直接下载带来的问题本站不予受理。
- 2.下载的文档,不会出现我们的网址水印。
- 3、该文档所得收入(下载+内容+预览)归上传者、原创作者;如果您是本文档原作者,请点此认领!既往收益都归您。
下载文档到电脑,查找使用更方便
10000 积分 0人已下载
下载 | 加入VIP,交流精品资源 |
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- DINENISOIEC270412016INFORMATIONTECHNOLOGYSECURITYTECHNIQUESGUIDANCEONASSURINGSUITABILITYANDADEQUACYOFINCIDENTINVESTIGATIVEMETHODISOIEC270412015GERMANPDF

链接地址:http://www.mydoc123.com/p-682864.html