Information security standards & publications
Information security protects information held by organizations from a wide range of threats to ensure business continuity, minimize business damage and maximise return on investment and business opportunities. Read more.
Popular information security standards
BS ISO/IEC 27001:2005/BS 7799-2:2005
Information technology. Security techniques. Information security management systems. Requirements
BS ISO/IEC 27002:2005/BS 7799-1:2005
Information technology. Security techniques. Code of practice for information security management
BS ISO/IEC 27005:2011
Information technology. Security techniques. Information security management systems. Requirements
BS 7799-3:2006
Information security management systems. Guidelines for information security risk management
Save money with KIT 20 Information Security Standards Kits
This Kit contains the four most popular information security standards: BS ISO/IEC 27001, BS ISO/IEC 27002, BS ISO/IEC 27005 and BS 7799-3.
Popular information security books
Information Security Risk Management: Handbook for ISO/IEC 27001
Edward Humphreys
Download Chapter 1 for free and read about the information security risk landscape
Managing Security in Outsourced and Off-shored Environments. How to safeguard intellectual assets in a virtual business world
David Lacey
Download Chapter 1 ‘Fundamentals of outsourcing’
The complete ISMS Documentation Toolkit CD-ROM and book.
A Manager's Guide to Data Security and ISO 27001/ISO 27002
Ian Calder and Steve Watkins
Read more about the CD and book for ISMS
We have a comprehensive range of books to help you implement an information security management system. View all all information security books
Other information security standards
BS ISO/IEC 27003:2010 Information technology. Security techniques. Information security management system implementation guidance
BS ISO/IEC 27011:2008
Information technology. Security techniques. Information security management guidelines for telecommunications organizations based on ISO/IEC 27002
This standard establishes guidelines and general principles for initiating, implementing, maintaining, and improving ISM in telecommunications organizations based on BS ISO/IEC 27002 Code of practice for information security management.

BS ISO/IEC 27006:2007
Information technology. Security techniques. Requirements for bodies providing audit and certification of information security management systems
BS ISO/IEC 24713-1:2008
Information technology. Biometric profiles for interoperability and data interchange. Overview of biometric systems and biometric profiles
BS ISO/IEC 24762:2008
Information technology. Security techniques. Guidelines for information and communications technology disaster recovery services
Return to ICT homepage