Data processing Systems and information
security (Pasquale Dionisio)
This article deals with the application of
the ISO/IEC 17799:2000, acknowledging English
standard BS7799-1:2000 about information security.
In particular this standard sets an operating
plan in order to define and manage a security
system in compliance with three basic principles:
information privacy, wholeness and availability.
Basically, this standard helps to define a security
planning, usually developing by the following,
essential, steps:
- safety system project;
- carrying out activities planning;
- system management care;
- efficacy and efficiency level check.
All the public and private Bodies, in particular
those running trade and electronic banking,
or information archives, are interested in the
standard application.