iso file download
文库搜索
切换导航
文件分类
频道
文件分类
批量下载
ISO/IEC 27006 INTERNATIONAL STANDARD Third edition 2015-10-01 Informationtechnology-Security techniquesRequirements for bodies providing audit and certification ofinformation security managementsystems Technologies del'information-Techniques de securite-Exigences pour lesorganismes procedant a I'audit eta la certification des systemes demanagementdela securitedeI'information Referencenumber IS0/IEC 27006:2015(E) ISO/IEC2015 IS0/IEC27006:2015(E) COPYRIGHTPROTECTEDDOCUMENT @ IS0/IEC 2015, Published in Switzerland Abyghtyrneersedlalestronicotherwspemifiebianicplaitdfixlisgplbbikotopyimgyobqostingintprndtuoedotnttilizet otimeayisoithout prior written permission. Permission can be requested from either ISO at the address below or Iso's member body in the country of the requester. f3odeBpxribAic8.CP401 CH-1214 Vernier, Geneva, Switzerland Tel. +41 22 749 01 11 Fax +41 22 749 09
[email protected]
47 www.iso.org ii IS0/IEC 2015-All rights reserved IS0/IEC27006:2015(E) Contents Page Foreword Introduction. .vi 2 Scope 1 3 Normativereferences .1 4 Terms and definitions 1 5 Principles 1 General requirements 2 5.1 Legal and contractual matters 2 5.2 Management ofimpartiality 2 i 6 7 Structural requirements 2 Resourcerequirements 2 7.1 Competenceofpersonnel 2 7.1.1 IS 7.1.1 General considerations .3 7.2 ParonnellSndl.edDeternthreationcertificationCantpeiteeseriteria 3 7.2.1IS7.2Demonstrationofauditorknowledgeand experience 6 7.3 Use of individual external auditors and external technical experts. 7.3.1 7.4 Personnel records. 8 7.5 Outsourcing. Informationrequirements 8 8.1 Public information .8 8.2 Certificationdocuments 8 8.3 ReferenceSBo2EsvisficationCartifisatifmdotasments 8 8.4 Confidentiality .8 8.4.1 IS 8.4 Access to organizational records 8 9 Process requirements 8 9.1 Pre-certification activities .8 9.1.1 Application .8 9.1.3 Applicationprogzaewme 6 9.1.4 Determining audit time 10 9.1.5 Multi-site sampling 10 9.2 11 9.2.1 Determiningauditobjectives,scopeand criteria 11 9.2.2 Auditteamselectionandassignments 12 ntial ceraiflit ban 9.3 12 9.3.1 IS 9.3.1 Initial certification audit .13 9.4 Conducting audits. .14 3:4:2 IS 9.4 General 14 SpecificelementsoftheISMSaudit 9.4.3 IS 9.4 Audit report .14 9.5 Certification decision. 15 @ IS0/IEC 2015 - All rights reserved iii IS0/IEC27006:2015(E) 9.6 MaintainingGenerailfication 15 9.6.2 Surveillanceactivities. 15 9.6.3 Re-certification 16 9:6:4 Susgial augitswithdrawing or reducing the scope of certification 17 9.7 Appeals 17 9.8 Complaints 17 10 Managementsystemrequirementsforcertificationbodies .17 10.1 Options 17 10.1.1IS10.1ISMS implementation 17 10.3 Option A:B4ieangeralentmarygtemeistrstemirementsreqaicemntartse.with.IS0.9.00.1 17 AnnexA(informative)KnowledgeandskillsforISMSauditingandcertification .18 AnnexB(normative)Audittime .20 AnnexC(informative)Methodsforaudittimecalculations .25 AnnexD(informative)GuidanceforreviewofimplementedIS0/IEC27001:2013, AnnexAcontrols 28 Bibliography .35 IS0/IEC 2015 - All rights reserved IS0/IEC 27006:2015(E) Foreword ISO(the International OrganizationforStandardization)andIEC (theInternational Electrotechnical fimmbiasiofijsormIRfespeciadipedesysthedeveloplabaidefrstendatidizaltion.StNadiarddthudieghtechniaab committees established bythe respective organization todeal with particularfields of technical activity.IsOandIECtechnicalcommittees collaborateinfieldsof mutual interest.Otherinternational rgaizathnsjeldvofrinfoemafiandehngboerseatadieeaafsrithtalishedanafoialstetakeartonthfttee IS8/IECJTC1. Thedessribedis ts ysec brrdevielep abisaentpaaediahasethadiffsrenpjts farthersiterin aedarefor thedifferenttypesofdocumentshouldbenoted.Thisdoe draftedinaccordancewiththe editorial rules ofthe ISO/IEC Directives, Part2 (see www.iso.org/directives) AfnateotrightawntschanlFpshabiney trah sbshteoflespontsible fthisrderitmyingany heathaipaten subject rights. Details of any patent rights identified during the development of the doe entwillbe-inthe Introductionand/or
ISO-IEC 27006 Requirements for bodies providing audit 2015 英文版
文档预览
中文文档
48 页
50 下载
1000 浏览
0 评论
0 收藏
3.0分
赞助3元下载(无需注册)
温馨提示:本文档共48页,可预览 3 页,如浏览全部内容或当前文档出现乱码,可开通会员下载原始文档
下载文档到电脑,方便使用
赞助3元下载
本文档由 思安 于
2022-11-26 11:57:37
上传分享
举报
下载
原文档
(7.9 MB)
分享
友情链接
ISO TS 23860 2022 Ships and marine technology — Vocabulary related to autonomous ship.pdf
ISO 7240-13 2020 Fire detection and alarm systems Part 13 Compatibility assessment of system components.pdf
ISO 5667-6 2014 Water quality — Sampling — Part 6 Guidance on sampling of rivers and streams.pdf
ISO TS 22318 2021 Security and resilience — Business continuity management systems — Guidelines for supply chain continuity management.pdf
ISO 14072 2024 Environmental management Life cycle assessment Requirements and guidance for organizational life cycle assessment.pdf
ISO 19711-1 2018 Building construction machinery and equipment Truck mixers Part 1 Terminology and commercial specifications.pdf
ISO 5611-4 2015 Cartridges, type A, for indexable inserts — Part 4 Style J.pdf
ISO IEC TS 17021-7 2014 Conformity assessment — Requirements for bodies providin.pdf
ISO 3327 2009 Hardmetals — Determination of transverse rupture strength.pdf
ISO IEC TR 9789 1994 Information technology — Guidelines for the organization and representation of data elements for data interchange — Coding methods and principles.pdf
GB-T 16660-2008 选煤厂用图形符号.pdf
GB-T 23164-2008 地毯抗微生物活性测定.pdf
GB-T 10699-2015 硅酸钙绝热制品.pdf
GB-T 23842-2009 无机化工产品中硅含量测定通用方法 还原硅钼酸盐分光光度法.pdf
GB-T 16695-1996 造船 球鼻艏和侧推器符号.pdf
GB-T 8325-1987 聚合物和共聚物水分散体 pH 值测定方法.pdf
GB-T 1099.1-2003 普通型 半圆键.pdf
GB-T 19318-2003 小艇 液压操舵系统.pdf
GB-T 1251.2-2006 人类工效学 险情视觉信号 一般要求、设计和检验.pdf
GB-T 18310.12-2002 纤维光学互连器件和无源器件 基本试验和测量程序 第2-12部分 试验 撞击.pdf
1
/
3
48
评价文档
赞助3元 点击下载(7.9 MB)
回到顶部
×
微信扫码支付
3
元 自动下载
官方客服微信:siduwenku
支付 完成后 如未跳转 点击这里 下载
站内资源均来自网友分享或网络收集整理,若无意中侵犯到您的权利,敬请联系我们
微信(点击查看客服)
,我们将及时删除相关资源。