ISO 27004: A part of the ISO 27000 family of standards, ISO 27004 provides guidelines and recommendations for the development and use of measures and measurements to assess the effectiveness of an implemented information security management system (ISMS) and the controls or groups of controls, as specified in ISO 27001. This standard is designed to help organizations measure, report, and, consequently, improve the effectiveness of their information security.
Categories: CC D1: Security Principles | CCSP D6: Legal - Risk and Compliance | CISM D1: Information Security governance | CISSP D1: Security and Risk Management | Security+ D5: Security Program Management and Oversight | SSCP D1: Security Concepts and Practices
« Back to Glossary Index