• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Supporting the development and documentation of ISO 27001 information security management systems through security requirements engineering approaches
 
  • Details
  • Full
Options
2012
Conference Paper
Title

Supporting the development and documentation of ISO 27001 information security management systems through security requirements engineering approaches

Abstract
Assembling an information security management system according to the ISO 27001 standard is difficult, because the standard provides only sparse support for system development and documentation. We analyse the ISO 27001 standard to determine what techniques and documentation are necessary and instrumental to develop and document systems according to this standard. Based on these insights, we inspect a number of current security requirements engineering approaches to evaluate whether and to what extent these approaches support ISO 27001 system development and documentation. We re-use a conceptual framework originally developed for comparing security requirements engineering methods to relate important terms, techniques, and documentation artifacts of the security requirements engineering methods to the ISO 27001.
Author(s)
Beckers, K.
Faßbender, S.
Heisel, M.
Küster, J.-C.
Schmidt, H.
Mainwork
Engineering secure software and systems. 4th international symposium, ESSoS 2012  
Conference
International Symposium on Engineering Secure Software and Systems (ESSoS) 2012  
DOI
10.1007/978-3-642-28166-2_2
Language
English
Fraunhofer-Institut für Software- und Systemtechnik ISST  
  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024