公共安全标准网
International IEC ISo Standard IS0/IEC 27035-4 First edition Information technology - 2024-12 Information security incident management - Part 4: Coordination TechnologiesdeI'information-Gestion des incidents de sécurite de I'information- Partie4:Coordination Referencenumber ISO/IEC27035-4:2024(en) IS0/IEC2024 IS0/IEC27035-4:2024(en) COPYRIGHT PROTECTED DOCUMENT @IS0/IEC2024 All rights reserved. Unless otherwise specified, or required in the context of its implementation, no part of this publication may be reproduced or utilized otherwise in any form or by any means, electronic or mechanical, including photocopying, or posting on the internet or an intranet, without prior written permission. Permission can be requested from either Iso at the address below or Iso's member body in the country of the requester. ISO copyright office CP 401 : Ch. de Blandonnet 8 CH-1214 Vernier, Geneva Phone:+41227490111 Email:[email protected] Website: www.iso.org Published in Switzerland @ IS0/IEC 2024 - All rights reserved ii IS0/IEC27035-4:2024(en) Contents Page Foreword .iv Introduction V 1 Scope. .1 2 Normativereferences .1 3 Terms and definitions .1 4 Overview. 2 4.1 General 2 4.2 Coordinationteam 3 4.3 Principles of coordination 4 4.3.1Timeliness principle 4 4.3.2 Roles and responsibilities principle 4 4.3.3 Common understanding principle 4 4.3.4 Confidentiality principle. 4 5 Coordinatedincidentmanagementprocess. 4 5.1 Overview. 4 5.2 Coordinated plan and prepare 5.3 Coordinated detect and report .6 5.4 Coordinated assessment and decision 5.5 Coordinated respond 8 5.6 Coordinated learn lessons .9 6 Guidelinesforkeyactivitiesofcoordinatedincidentmanagement .10 6.1 Developing coordination policies .10 6.2 Establishing communications. 11 6.3 Threat and event Information sharing. .11 6.3.1 Overview .11 Information types. 12 6.3.2 6.3.3 Establishinginformationsharingrelationships 13 6.3.4 Participatinginformationsharingrelationships .14 6.4 Conducting coordinated exercises. 16 6.5 Building trust. .17 Annex A (informative) Examples of information security incident management coordination 19 Bibliography 22 IS0/IEC 2024-All rights reserved iii IS0/IEC27035-4:2024(en) Foreword Iso (the International Organization for Standardization) and IEC (the International Electrotechnical Commission)form the specialized system for worldwide standardization.National bodies that are members of ISo or IEC participate in the development of International Standards through technical committees established by the respective organization to deal with particular fields of technical activity. IsO and IEC technical committees collaborate infields of mutual interest.Other international organizations, governmental and non-governmental, in liaison with IsO and IEC, also take part in the work. The procedures used to develop this document and those intended for its further maintenance are described in the Iso/IEC Directives, Part 1. In particular, the different approval criteria needed for the different types of document should be noted. This document was drafted in accordance with the editorial rules of the Iso/ IEC Directives, Part 2 (see www.iso.org/directives or www.iec.ch/members_experts/refdocs). IsOand IECdrawattention tothepossibilitythattheimplementation of thisdocumentmayinvolvethe use of (a) patent(s). Iso and IEC take no position concerning the evidence, validity or applicability of any claimed patent rights in respect thereof. As of the date of publication of this document, IsO and IEc had not received notice of (a)patent(s) which mayberequired toimplementthis document.However, implementers are cautioned that this may not represent the latest information, which may be obtained from the patent database available at www.iso.org/patents and https://patents.iec.ch. Iso and IEC shall not be held responsible for identifying any or all such patent rights. Any trade name used in this document is information given for the convenience of users and does not constitute an en

.pdf文档 ISO-IEC 27035-4 2024 Information technology - Information security incident management - Part 4 Coordination

文档预览
中文文档 30 页 50 下载 1000 浏览 0 评论 309 收藏 3.0分
温馨提示:本文档共30页,可预览 3 页,如浏览全部内容或当前文档出现乱码,可开通会员下载原始文档
ISO-IEC 27035-4 2024 Information technology - Information security incident management - Part 4 Coordination 第 1 页 ISO-IEC 27035-4 2024 Information technology - Information security incident management - Part 4 Coordination 第 2 页 ISO-IEC 27035-4 2024 Information technology - Information security incident management - Part 4 Coordination 第 3 页
下载文档到电脑,方便使用
本文档由 人生无常 于 2025-08-02 10:45:56上传分享
友情链接
站内资源均来自网友分享或网络收集整理,若无意中侵犯到您的权利,敬请联系我们微信(点击查看客服),我们将及时删除相关资源。