Category ISO Standards

ISO Standards Interpretation

ISO/IEC 27035-4:2020 — Incident Management — Coordination

Coordination frameworks for multi-team and cross-organizational incident management In complex incidents — particularly those affecting multiple business units, multiple organizations, or critical national infrastructure — effective coordination is as important as technical response capability. ISO/IEC 27035-4:2020 provides the framework for…

ISO/IEC 27036-2:2014 — Supplier Relationships — Requirements

Security requirements for defining, implementing, and managing supplier relationships While ISO/IEC 27036-1 provides concepts and an overview framework, ISO/IEC 27036-2:2014 defines the specific requirements for establishing, implementing, and maintaining information security in supplier relationships. This requirements standard is designed for…

ISO/IEC 27034-6: Application Security — Security Case Studies

Real-World Implementation Guidance for Application Security Controls Introduction: Learning from Real-World Application Security ISO/IEC 27034-6 provides structured case studies that demonstrate how organizations across different sectors have implemented application security controls in alignment with the ISO/IEC 27034 framework. Rather than…

ISO/IEC 27034-7: Application Security — Assurance Framework

Building Trust Through Structured Security Assurance for Applications Introduction: The Assurance Gap in Application Security ISO/IEC 27034-7 addresses a persistent challenge in application security: how do stakeholders gain confidence that security controls have been correctly implemented and remain effective over…

ISO/IEC 27035-1:2023 — Incident Management — Principles

Foundational guidelines for establishing an information security incident management capability Information security incidents are inevitable in modern organizations. The sophistication of cyber threats, the expansion of attack surfaces, and the increasing reliance on digital infrastructure demand a structured, principle-based approach…