Vahti Guide 2005/1 Information security and management by results
收藏资源简介:
The Recommendation handles information security according to the following division: — the definition of information security as a whole; — a presentation of general principles relating to information security using the Recommendation of the OECD as the basis; — an examination of the guidelines of national information security as a background factor; — the placement of information security in the management by results framework between the Ministry and the office; — a description of the handling of information security as an internal steering process of an office including policy and instructions as well as monitoring and evaluation.
本建议书对信息安全的论述遵循以下分类框架: — 信息安全的整体定义; — 以经合组织(OECD)建议书为依据,阐释信息安全领域的通用原则; — 将国家信息安全指南作为背景要素进行检视分析; — 将信息安全纳入部委与办公机构之间的成果管理框架; — 阐述办公机构将信息安全作为内部督导流程的处理方式,其中涵盖政策、指令以及监控与评估环节。



