Back

ISO/IEC 27036-2:2014

Information technology -- Security techniques -- Information security for supplier relationships -- Part 2: Requirements

General information
Valid from 25.07.2014
Directives or regulations
None
Standard history
Status
Date
Type
Name
25.07.2014
Main
ISO/IEC 27036-2:2014 specifies fundamental information security requirements for defining, implementing, operating, monitoring, reviewing, maintaining and improving supplier and acquirer relationships. These requirements cover any procurement and supply of products and services, such as manufacturing or assembly, business process procurement, software and hardware components, knowledge process procurement, Build-Operate-Transfer and cloud computing services. These requirements are intended to be applicable to all organizations, regardless of type, size and nature. To meet these requirements, an organization should have already internally implemented a number of foundational processes, or be actively planning to do so. These processes include, but are not limited to, the following: governance, business management, risk management, operational and human resources management, and information security.
*
*
*
PDF
175.56 € incl tax
Paper
175.56 € incl tax
Standard monitoring
Customers who bought this item also bought
Main

ISO/IEC 27018:2014

Information technology -- Security techniques -- Code of practice for protection of personally identifiable information (PII) in public clouds acting as PII processors
Withdrawn from 15.01.2019
Main

ISO 22315:2014

Societal security -- Mass evacuation -- Guidelines for planning
Newest version Valid from 03.12.2014
Main

ISO 22322:2015

Societal security -- Emergency management -- Guidelines for public warning
Newest version Valid from 21.05.2015
Main

ISO 22324:2015

Societal security -- Emergency management -- Guidelines for colour-coded alerts
Newest version Valid from 08.06.2015