ํšŒ์‚ฌ ์†Œ๊ฐœ
home

ISO 27001 & ISO 27701 ์ปจ์„คํŒ…

ISO/IEC 27001 & 27701 ์ปจ์„คํŒ…

์ •๋ณด ์ž์‚ฐ ๋ณดํ˜ธ ๋ฐ ๊ฐœ์ธ์ •๋ณด ๋ณดํ˜ธ ์ฒด๊ณ„๋ฅผ ๋™์‹œ์— ๊ตฌ์ถ•ํ•˜๋Š” ํ†ตํ•ฉ ์ ‘๊ทผ๋ฒ• ์ œ๊ณต

(ISO/IEC 27017, ISO/IEC 27018 ํด๋ผ์šฐ๋“œ ์„œ๋น„์Šค ํŠนํ™”)

์ •๋ณด๋ณด์•ˆ(๊ฐœ์ธ์ •๋ณด) ๋ฆฌ์Šคํฌ ํ‰๊ฐ€

์ •๋ณด๋ณด์•ˆ(๊ฐœ์ธ์ •๋ณด) ํ†ต์ œ ์ฒด๊ณ„ ๊ตฌ์ถ•

์ •๋ณด๋ณด์•ˆ ํ†ต์ œ ๋ฐ ๊ฐœ์ธ์ •๋ณด ๋ณดํ˜ธ์กฐ์น˜ ์ดํ–‰

์ธ์ฆ ๋Œ€์‘ ์ง€์›

ISO/IEC 27001 - ์ •๋ณด๋ณด์•ˆ ๊ฒฝ์˜์‹œ์Šคํ…œ (ISMS)

์กฐ์ง์˜ ์ •๋ณด์ž์‚ฐ์„ ๋ณดํ˜ธํ•˜๊ธฐ ์œ„ํ•ด ์ •๋ณด๋ณด์•ˆ ์œ„ํ—˜์„ ๊ด€๋ฆฌํ•˜๊ณ , ํ†ต์ œ๋ฅผ ์ง€์†์ ์œผ๋กœ ์ดํ–‰ ๋ฐ ๊ฐœ์„ ํ•˜๋Š” ๊ด€๋ฆฌ ์ฒด๊ณ„

[๊ทธ๋ฆผ] ISMS ํ”„๋กœ์„ธ์Šค์— ์ ์šฉ๋œ PDCA ๋ชจ๋ธ (ISO/IEC 27001:2022 ๊ทผ๊ฑฐ)

ISO/IEC 27001:2022 - ์ •๋ณด๋ณด์•ˆ ๊ฒฝ์˜์‹œ์Šคํ…œ ์š”๊ตฌ์‚ฌํ•ญ

ISO 27001:2022๋Š” ์ •๋ณด๋ณด์•ˆ ๊ด€๋ฆฌ์ฒด๊ณ„(ISMS)์˜ ๊ตฌ์ถ•ยท์šด์˜ยท๋ชจ๋‹ˆํ„ฐ๋งยท์ง€์†์  ๊ฐœ์„ ์— ํ•„์š”ํ•œ ์š”๊ตฌ์‚ฌํ•ญ์„ ์ •์˜ํ•ฉ๋‹ˆ๋‹ค.

4 ์กฐ์ง ์ƒํ™ฉ
5 ๋ฆฌ๋”์‹ญ
6 ๊ณ„ํš
7 ์ง€์›
8 ์šด์˜
9 ์„ฑ๊ณผ ํ‰๊ฐ€
10 ๊ฐœ์„ 
4.1 ์กฐ์ง๊ณผ ์ƒํ™ฉ์— ๋Œ€ํ•œ ์ดํ•ด
5.1 ๋ฆฌ๋”์‹ญ๊ณผ ์˜์ง€
6.1 ์œ„ํ—˜๊ณผ ๊ธฐํšŒ์— ๋”ฐ๋ฅธ ์กฐ์น˜
7.1 ์ž์›
8.1 ์šด์˜ ๊ณ„ํš ๋ฐ ํ†ต์ œ
9.1 ๋ชจ๋‹ˆํ„ฐ๋ง, ์ธก์ •, ๋ถ„์„, ํ‰๊ฐ€
10.1 ์ง€์†์  ๊ฐœ์„ 
4.2 ์ดํ•ด๋‹น์‚ฌ์ž ์š”๊ตฌ์™€ ๊ธฐ๋Œ€ ์ดํ•ด
5.2 ์ •์ฑ…
6.2 ์ •๋ณด๋ณด์•ˆ ๋ชฉํ‘œ ๋ฐ ๋‹ฌ์„ฑ ๊ณ„ํš
7.2 ์ ๊ฒฉ์„ฑ
8.2 ์ •๋ณด๋ณด์•ˆ ์œ„ํ—˜ํ‰๊ฐ€
9.2 ๋‚ด๋ถ€ ์‹ฌ์‚ฌ
10.2 ๋ถ€์ ํ•ฉ ๋ฐ ์‹œ์ • ์กฐ์น˜
4.3 ์ •๋ณด๋ณด์•ˆ ๊ฒฝ์˜์‹œ์Šคํ…œ์˜ ๋ฒ”์œ„ ๊ฒฐ์ •
5.3 ์กฐ์ง์˜ ์—ญํ• , ์ฑ…์ž„, ๊ถŒํ•œ
6.3 ๋ณ€๊ฒฝ ๊ณ„ํš
7.3 ์ธ์‹
8.3 ์ •๋ณด๋ณด์•ˆ ์œ„ํ—˜์ฒ˜๋ฆฌ
9.3 ๊ฒฝ์˜ ๊ฒ€ํ† 
4.4 ์ •๋ณด๋ณด์•ˆ ๊ฒฝ์˜์‹œ์Šคํ…œ (ISMS)
7.4 ์˜์‚ฌ์†Œํ†ต
7.5 ๋ฌธ์„œํ™”๋œ ์ •๋ณด

ISO/IEC 27001:2022, Annex A - ์ •๋ณด๋ณด์•ˆ ํ†ต์ œ

ISO 27001:2022, Annex A๋Š” ISMS ์šด์˜์„ ์œ„ํ•œ ISO/IEC 27002:2022 ๊ธฐ๋ฐ˜์˜ ์ •๋ณด๋ณด์•ˆ ํ†ต์ œ ํ”„๋ ˆ์ž„์›Œํฌ๋ฅผ ์ œ๊ณตํ•ฉ๋‹ˆ๋‹ค.

4 Themes 93 Controls

์กฐ์ง ํ†ต์ œ (37 Controls)
์ธ์  ํ†ต์ œ (8 Controls)
๋ฌผ๋ฆฌ์  ํ†ต์ œ (14 Controls)
๊ธฐ์ˆ ์  ํ†ต์ œ (34 Controls)
๊ฑฐ๋ฒ„๋„Œ์Šค
์ธ์  ์ž์› ๋ณด์•ˆ
์ถœ์ž… ํ†ต์ œ
๊ณ„์ • ๋ฐ ์ ‘๊ทผ ๊ด€๋ฆฌ
์ž์‚ฐ๊ด€๋ฆฌ
์ธ์‹ ๋ฐ ๊ต์œก
๋ฌผ๋ฆฌ์  ๋ณดํ˜ธ
๋ณด์•ˆ ๊ตฌ์„ฑ
๊ณต๊ธ‰์ž๊ด€๊ณ„ ๋ณด์•ˆ
์‹œ์Šคํ…œ, ๋„คํŠธ์›Œํฌ ๋ณด์•ˆ
์ •๋ณด๋ณด์•ˆ ์ด๋ฒคํŠธ๊ด€๋ฆฌ
๋ฐ์ดํ„ฐ๋ณดํ˜ธ
ICT ์—ฐ์†์„ฑ
์œ„ํ˜‘ ๋ฐ ์ทจ์•ฝ์  ๊ด€๋ฆฌ
๋ฒ•๋ฅ  ๋ฐ ์ปดํ”Œ๋ผ์ด์–ธ์Šค
์–ดํ”Œ๋ฆฌ์ผ€์ด์…˜ ๋ณด์•ˆ
์ •๋ณด๋ณด์•ˆ ๋ณด์ฆ