精品人妻码一区二区三区-xxxxx性bbbbb欧美-国产精品成人99一区无码-久久99国产综合精品免费

ISO27001相關(guān)術(shù)語(yǔ)

發(fā)布時(shí)間:2025-07-16 點(diǎn)擊:14
ISO27001相關(guān)術(shù)語(yǔ)
信息安全
¨[ISO/IEC17799:2000]
Preservation of confidentiality,integrity and availability of information.
保持信息的保密性?完整性和可用性?
¨[ISO/IEC17799:2005]
Preservation of confidentiality,integrity and availability of information;inaddition,other properties,such as authenticity,accountability,non-repudiation and reliability canals obeinvolved.
保持信息的保密性?完整性和可用性;另外,還包括真實(shí)性?可核查性?抗抵賴(lài)和可靠性?
保密性
¨[ISO/IEC13335-1:2004]
The property that information is not made available or disclosed to unauthorized individuals,entities,orprocesses.
使信息不泄露給未授權(quán)的個(gè)人?實(shí)體?過(guò)程或不使信息為其利用的特性?
完整性
¨[ISO/IEC13335-1:2004]
Integrity:the property of safe guarding the accuracy and completeness of assets.
保護(hù)資產(chǎn)準(zhǔn)確性和完備性的特性?
可用性
¨[ISO/IEC13335-1:2004]
Availability:the property of being accessible and usable upondemand by an authorizedentity.
已授權(quán)實(shí)體一旦需要就可訪問(wèn)和使用的特性?
資產(chǎn)
[ISO/IECTR13335-1:2004]
Asset:anything that has value to the organization.
任何對(duì)組織有價(jià)值的東西?
威脅
¨[ISO/IECTR13335-1:2004]
Threat:apotential cause of an unwanted incident that may result in harm to a system or organization.
可能對(duì)系統(tǒng)或組織造成損害的事件的潛在原因?
薄弱點(diǎn)
¨[ISO/IECTR13335-1:2004]
Vulnerability:a weakness of an asset or group of assets that can be exploited by one or more threats.
指資產(chǎn)或資產(chǎn)組的能被威脅利用的薄弱點(diǎn)?
風(fēng)險(xiǎn)
¨[ISOGuide73:2002]
Risk:combination of the probability of an event and its consequence.
指事件發(fā)生的可能性及后果的結(jié)合
風(fēng)險(xiǎn)管理
¨[ISO/IEC17799:2000]
Process of identifying,controlling and minimizing or eliminating security risks that may affect information systems,for an acceptable cost.
以可接受的費(fèi)用識(shí)別?控制?降低或消除可能影響信息系統(tǒng)的安全風(fēng)險(xiǎn)的過(guò)程?
¨[ISOGuide73:2002]
Coordinated activities to direct and control an organization with regard to risk.
指導(dǎo)和控制組織風(fēng)險(xiǎn)的協(xié)調(diào)活動(dòng)
NOTE:Risk management typically includes risk assessment,risk treatment,risk acceptance and risk communication
注:風(fēng)險(xiǎn)管理活動(dòng)一般包括風(fēng)險(xiǎn)評(píng)估?風(fēng)險(xiǎn)處理?風(fēng)險(xiǎn)接受和風(fēng)險(xiǎn)溝通?
¨[ISO/IECTR13335-1:2004]
The total processof identifying,controlling,and eliminating or minimizing uncertain events that may affect IT system resources.
識(shí)別?控制?消除或降低不期望事件影響IT系統(tǒng)資源的全過(guò)程?
風(fēng)險(xiǎn)分析
¨[ISOGuide73:2002]
System at ic use of information to identify sources and to estimate the risk.
系統(tǒng)地使用信息識(shí)別來(lái)源和估計(jì)風(fēng)險(xiǎn)?
¨[ISO/IECTR13335-1:2004]
The system at ic process of estimating the magnitude of risks.
評(píng)估風(fēng)險(xiǎn)大小的系統(tǒng)化的過(guò)程?
風(fēng)險(xiǎn)賦值
¨[ISOGuide73:2002]
Process of comparing the estimated risk against given risk criteria to determine the significance of the risk.
對(duì)照給定的風(fēng)險(xiǎn)準(zhǔn)則和正在估計(jì)的風(fēng)險(xiǎn),以確定風(fēng)險(xiǎn)嚴(yán)重程度的過(guò)程?
風(fēng)險(xiǎn)評(píng)估
¨[ISO/IEC17799:2000]
Assessment of threats to,impactson and vulnerabilities of information and information processing facilities and the likelihood of their occurrence.
對(duì)信息和信息處理設(shè)施的危害?影響和薄弱點(diǎn)及三者發(fā)生的可能性的評(píng)估?
¨[ISOGuide73:2002]
Over all process of risk analysis and riskuation.
風(fēng)險(xiǎn)分析和風(fēng)險(xiǎn)評(píng)價(jià)的整個(gè)過(guò)程?
剩余風(fēng)險(xiǎn)
¨[ISOGuide73:2002]
Risk remaining after risk treatment.
風(fēng)險(xiǎn)處理后殘留的風(fēng)險(xiǎn)?
¨[ISO/IECTR13335-1:2004]
The risk that remains after implementation of the IT security plan.
實(shí)施IT安全計(jì)劃后殘留的風(fēng)險(xiǎn)?
風(fēng)險(xiǎn)接受
¨[ISOGuide73:2002]
Decision to accept a risk.
接受一個(gè)風(fēng)險(xiǎn)的決定?
風(fēng)險(xiǎn)處理
¨[ISOGuide73:2002]
Process of selection and implementation of measures to modify risk.
選擇和實(shí)施措施以降低風(fēng)險(xiǎn)的處理過(guò)程?
風(fēng)險(xiǎn)降低
¨[ISOGuide73:2002]
Actions taken to lessen the probability,negative consequences,or both,as sociated with a risk.
采取措施降低風(fēng)險(xiǎn)發(fā)生的可能性以及與風(fēng)險(xiǎn)相關(guān)的負(fù)面影響?
風(fēng)險(xiǎn)轉(zhuǎn)移
¨[ISOGuide73:2002]
Sharing with an other party the burden of loss or benefit of gain,for a risk.
與另一方共同承擔(dān)風(fēng)險(xiǎn),從而減輕利益或財(cái)產(chǎn)損失的負(fù)擔(dān)?


餐飲管理去哪申報(bào)ISO9001質(zhì)量管理體系認(rèn)證
ISO9001認(rèn)證體系中對(duì)表格的控制(iso9001認(rèn)證是啥意思)
淺談ISO9001認(rèn)證步驟和流程
蘭州ISO27001認(rèn)證的風(fēng)險(xiǎn)處置階段的工作內(nèi)容
BRC認(rèn)證需要準(zhǔn)備什么?分幾個(gè)等級(jí)?
dcmm體系認(rèn)證證書(shū)
ISO14001環(huán)境因素識(shí)別方法
天津iso9000認(rèn)證哪家好?天津iso27001哪家好?