1/20
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai | Chat |
|---|
No analytics yet
Send a link to your students to track their progress
ISF
Information Security Forum
ISO/IEC
International Standards
NIST
National Institute of Standards and Technology
CIS
Publishes the CIS Critical Security Controls for Effective Cyber Defense. These controls focus on specific actions organizations can implement to protect their systems.
ISACA
Publishes COBIT 5; a detailed framework for governance and management of enterprise IT
PCI Security Standards Council
Publishes PCI DSS; which sets security requirements for organizations handling payment cards and cardholder data
Information Security Forum (ISF) Definition
Publishes the Standard of Good Practice for Information Security (SGP). provides business-focused guidance for identifying and managing information security risks
ISO/IEC — International standards Definition
ISO and IEC jointly develop information security standards, including the ISO/IEC 27000 family.
National Institute of Standards and Technology (NIST) Definition
A U.S. federal agency that develops standards and guidance. Cybersecurity Framework
Center for Internet Security (CIS) Definition
Publishes the CIS Critical Security Controls for Effective Cyber Defense. These controls focus on specific actions organizations can implement to protect their systems.
ISO 27001
Specifies requirements for an Information Security Management System (ISMS).
ISO 27002
Provides a code of practice and guidance for information security controls.
SP 800-53
Security and privacy controls
SP 800-100
Information security handbook for managers
SP 800-55
Information security performance measurement
SP 800-144
Security and privacy in public cloud computing
ITU-T
International Telecommunication Union
International Telecommunication Union (ITU-T) Definition
A United Nations specialized agency. ITU-T develops international telecommunications Recommendations
SP 800-27
Security engineering principles
SP 800-12
Introduction to information security
FIPS 200
Minimum security requirements for federal information systems