ãåãã§ããï¼ ISMSè¦æ ¼æ¹è¨ã®èæ¯ã¨æå³ï¼ã¿ãªããåã®ISMSæ¹è¨å¯¾å¿ç©èªï¼1ï¼ï¼1/2 ãã¼ã¸ï¼ æ å ±ã»ãã¥ãªãã£ããã¸ã¡ã³ãã·ã¹ãã ï¼ISMSï¼è©ä¾¡èªå®å¶åº¦ã®åºã¨ãªã£ã¦ããå½éè¦æ ¼ãISO/IEC27001ãã2013å¹´10æã«æ¹è¨ããã¾ããããã®æ°è¦æ ¼ã«å¯¾å¿ããéã®ãã¤ã³ãã¨ã¯ä½ã§ãããï¼ ã¨ããä¼ç¤¾ã®ISMSæ¨é²ãã¼ã ã¡ã³ãã¼ããã¿ãªããåãã¨ä¸ç·ã«å¦ãã§ã¿ã¾ãããã æ å ±ã»ãã¥ãªãã£ããã¸ã¡ã³ãã·ã¹ãã ï¼ISMSï¼ã®è©ä¾¡èªå®å¶åº¦ã®åºã¨ãªã£ã¦ããå½éè¦æ ¼ãISO/IEC27001ãã2013å¹´10æã«æ¹è¨ããã¾ããããã®ç©èªã¯ãISMSæ¨é²ãã¼ã ã¡ã³ãã¼ã®ãã¿ãªããåãããä¸å¸ãå 輩ã«æå°ãåããªãããèªç¤¾ã®ISMSã®ä»çµã¿ããã®æ°è¦æ ¼ï¼ISO/IEC27001:2013ï¼ã¸å¯¾å¿ãããä½æ¥ãè¡ã£ã¦ããéç¨ãæããã®ã§ãã èªè ã®çãã¾ã«ã¯ããã®é£è¼ãéãã¦ãæ¹è¨çè¦æ ¼ã§ããIS
è¦æ ¼æ¸4.3.1以éã¯ISMSãææ¸åããã«ããã£ã¦ã®è¦æ ¼è¦æ±äºé ã«ãªã£ã¦ããã ISMSåºæ¬æ¹éã«å§ã¾ã£ã¦ãèªåãã¡ãISMSãåå¾ããä¸ã§å¿ è¦ã«ãªã£ã¦ãããã¾ãã¾ãªææ¸ã®ãªã¹ããã ãããã管çããã«ã¯ã©ã®ãããªãã¨ã«æ°ãã¤ããªããã°ãªããªãã®ããæ¸ããã¦ããã ISMSãææ¸åããã®ã«ãããããããã®ããææ¸ã®é層åãã ã ã»ã³ã¿ã¼ã§æ¡ã£ãæ¹æ³ãããã«ãããã®ã§ãç§ã¯ããããèããããã«åãå ¥ãã¦ããããã©ãè¦æ ¼æ¸ã«ã¯ç¹ã«ãææ¸ã®é層åãã¨ããè¨èã¯åºã¦ããªãã ãªã®ã§ãããããããæ¹ãä¸è¬çãªã®ã ãã¨ããä½ã®ã¤ããã§ç´¹ä»ãããã¨æãã ISMSãææ¸ã«ã¾ã¨ããéã«ã¯ãä¸ä½ææ¸ã¨ä¸ä½ææ¸ã¨ã«åãããã¨ã念é ã«ç½®ãã ä¸ä½ææ¸ã¨ã¯ããã大ããªæ¦å¿µ(åºæ¬æ¹é)ããããã¥ã¢ã«(èªåãã¡ã§ä½ãèªåãã¡ã®ããã®ISMSããã¥ã¢ã«)ãªã©ã大ã¾ãã«å ¨ä½åã示ãææ¸ã®ãã¨ãããã«å¯¾ããä¸ä½ææ¸ã¨ã¯ã
ãã質åã ãï¼ æ°ãä»ããªããã°ãªããªããã¨ã¯ãISO/IEC27001:2013ã§ã¯ããç®çãã¨ããç¨èªãã2ã¤ã®åæï¼è±èªï¼ã§ãã®è¨èãç¨ãã¦ãããã ããä¸ã¤ã¯ããPurposeãã§ãã4.1 çµç¹ããã³ãã®ç¶æ³ã®ç解ãã¨ã5.2 æ¹éï¼aï¼ãã§åºã¦ãããçµç¹ã®ç®çï¼Purposeï¼ãããããã«å½ããããããä¸ã¤ã¯ããObjectiveãã§ãã5.1 ãªã¼ãã¼ã·ããããã³ã³ãããã¡ã³ãï¼ï½ï¼ãã5.2 æ¹éï¼bï¼ãã6.2 æ å ±ã»ãã¥ãªãã£ç®çããã³ãããéæããããã®è¨ç»çå®ãã8.1 éç¨ã®è¨ç»ããã³ç®¡çãã¨ã9.3 ããã¸ã¡ã³ãã¬ãã¥ã¼ãã«åºã¦ããããæ å ±ã»ãã¥ãªãã£ç®çï¼Objectiveï¼ãã ãã ã¿ãªããåï¼ ISO/IEC27000:2013ã®å®ç¾©2.56ã§ã¯ããç®çï¼Objectiveï¼ãã¨ã¯ããéæããçµæã§ãããåããããªæå³ãæã¤å¥ã®è¨èã§ãããçãï¼Aimï¼ãå°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}