Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Management
[Top] [All Lists]

AW: diff btw BD 7799, ISF Security Standard, ITIL and others..

Subject: AW: diff btw BD 7799, ISF Security Standard, ITIL and others..
Date: Wed, 12 Jan 2005 00:12:29 +0100
-----Ursprüngliche Nachricht-----
Von: Torsten Richter [mailto:tr@infoag.net] 
Gesendet: Dienstag, 11. Januar 2005 08:43
An: 'NabilM@kuveytturk.com.tr'
Betreff: AW: diff btw BD 7799, ISF Security Standard, ITIL and others..

Hello,

The BS 7799 is a standard for IT Security Management. It describes in two
parts a lot of requirements for an IT Security Managementsystem. You can see
for example how to handle digital signatures, what's about your IT Security
Organisation an so on.
It's in his Principle comparably to the ISO 9001 for Quality Management
Systems. The international Version of the BS 7799 Part 1 is the ISO/IEC
17799.

ITIL is a process model. You can use it for IT-Service Management and also
for IT Security Management. But it only describes how you can implement and
optimize IT-based Businessprocesses.

I don't work with the ISF Security Standard, so I can't say something about
this Standard.

What I can recommend is the IT Baseline Protection Manual. You can find it
at: http://www.bsi.de/gshb/english/etc/index.htm
It is a manual from the German IT Security Authority and describes
organisation and technical approaches.

Mit freundlichen Gruessen/Best regards

Torsten Richter

CEO

Informatik Agentur RW oHG
Adenemer Weg 22 * 38302 Wolfenbuettel

mail:           tr@infoag.net

-----Ursprüngliche Nachricht-----
Von: NabilM@kuveytturk.com.tr [mailto:NabilM@kuveytturk.com.tr]
Gesendet: Dienstag, 11. Januar 2005 07:45
An: security-management@securityfocus.com
Betreff: diff btw BD 7799, ISF Security Standard, ITIL and others..

Fellows,

Can some one point me too some article(s), or summarize me the difference
between these IT Security Standards including BD 7799, ISF Security
Standard, ITIL and others. I read some where that BS 7799 is less like a
standard and more like security practices that enable one to build and
tailor a security standard for his/her particular organization. On the other
hand, ISF standard was prepared by taking BS
7799 into account. I plan to implement a standard this year for my org, and
I am in the process of comparing the available ones. Any help in this would
be greatly appreciated.

Thanks in advance,

-Nabil.


DISCLAIMER:
Bu elektronik posta ve ekleri, sadece yukarida ismi yazili alicinin
dikkatine gonderilmistir. Mesajin muhatabi degilseniz, icerigini ve varsa
ekindeki dosyalari kimseye aktarmayiniz ya da kopyalamayiniz. Boyle bir
durumda gondereni uyarip, mesaji imha ediniz. KUVEYT TURK E.F.K. A.S bu
e-postanin ve eklerinin icerdigi bilgilerin size degisiklige ugrayarak
ulasmasindan veya gec ulasmasindan, butunlugunun ve gizliliginin
korunamamasindan veya icerigine guvenilerek yapilacak islemlerden dolayi
sorumlu tutulamaz.
This e-mail & its content have been sent to the attention of the receiver
named above. If you are not the intended recipient (or have received this
e-mail in error), Please notify the sender immediately and destroy this
e-mail. Any unauthorized copying, disclosure or distribution of the material
in this e-mail is strictly forbidden. Kuwait Turkish Evkaf Finance House
shall not be held liable for the arrival of this e-mail & its content as
modified or late, the protection of integrity and secrecy and shall not be
liable to any person who acts or omits to do anything in reliance upon it.


<Prev in Thread] Current Thread [Next in Thread>
  • AW: diff btw BD 7799, ISF Security Standard, ITIL and others.., Torsten Richter <=