Definition Edit

An Information Security Management System (ISMS) is

a systematic and structured approach to managing information so that it remains secure. ISMS implementation includes policies, processes, procedures, organizational structures and software and hardware functions. The ISMS implementation should be directly influenced by the organization's objectives, security requirements, processes employed, size and structure.[1]

References Edit

  1. CNII Portal, "Information Security Management System" (full-text).

