Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Basics
[Top] [All Lists]

CobiT / ISO 20000 / ITIL / ISO 27001

Subject: CobiT / ISO 20000 / ITIL / ISO 27001
Date: Wed, 27 Feb 2008 10:48:31 +0530
Hi,

 My first question is:
   Between CobiT / ISO 20000 / ITIL / ISO 27001, who is the best, who
is the most easy to implement?

Firstly a company can get certified to ISO 20000 and ISO 27001 which
are internationally acclaimed standards and rest ITIL and Cobit are
framework which states the best practices.

Just to give a brief about the various frameworks and standards:

ISO 27001 is a standard which explains on the security framework and
the controls to be selected on the basis of the Risk assessment or gap
analysis done.It is a people process technology standard which
concentrates on all three facets ie people process and technology at a
macro level.It also magnifies on putting a management system in place.

ISO 20000 is a standard which focuses on the IT service management.It
is an integrated process approach to effectively deliver managed
services to meet the business and customer requirements.

ITIL or Information technology infrastructure library provides a
framework with detailed description of a number of important IT
practices with comprehensive checklists, tasks and procedures that can
be tailored to any IT organization.

The Control Objectives for Information and related Technology (COBIT)
is a set of best practices ie framework for information technology
(IT) management created by the Information Systems Audit and Control
Association.COBIT provides managers, auditors, and IT users with a set
of generally accepted measures, indicators, processes and best
practices to assist them in maximizing the benefits derived through
the use of information technology and developing appropriate IT
governance and control in a company.


So depending on the business requirement and current scenario you can
decide on the certification or the framework.

 •       Project management guidle ?

PMP can be used a project management guide .


Thanks and Regards,

Harshal Mehta CISM CEH
Consulting Division|Wipro Limited
Mumbai
Mobile   : + 91 9819066601

<Prev in Thread] Current Thread [Next in Thread>