Sets security objectives, gives security risks an owner, puts security measures in place, reports how they are working and deals with incidents.
Also called ISM.
Read more: TOGAF Standard
In the Ultra Transcenders books
Each book explains Information Security Management in context, with comparison tables and the common traps.
Terms in this definition
- Full control
Gives every right over protected content, EXTRACT included, plus the ability to alter or strip the encryption. Owners and the Rights Management issuer always hold it.
Related terms
- ISO 27001
The international standard for information security management, which the regulatory compliance dashboard in Defender for Cloud reports against.
- ISO/IEC 27001
A globally recognised standard setting out what an information security management system must include. Independent auditors certify Microsoft's cloud services to it, and Compliance Manager provides a ready-made template to assess yourself against it.