ISO/IEC 27701:2019 安全技术 隐私信息管理用ISO/IEC 27001和ISO/IEC 27002的扩展 要求和指南
标准编号:ISO/IEC 27701:2019
中文名称:安全技术 隐私信息管理用ISO/IEC 27001和ISO/IEC 27002的扩展 要求和指南
英文名称:Security techniques — Extension to ISO/IEC 27001 and ISO/IEC 27002 for privacy information management — Requirements and guidelines
发布日期:2019-08
标准范围
ISO/IEC 27701:2019本文件规定了建立、实施、维护和持续改进隐私信息管理系统(PIMS)的要求并提供了指导,以扩展ISO/IEC 27001和ISO/IEC 27002的形式,用于组织内的隐私管理。本文件规定了PIMS相关要求,并为负责PII处理的PII控制器和PII处理器提供了指导。本文件适用于所有类型和规模的组织,包括公共和私营公司、政府实体和非营利组织,它们是在ISMS内处理PII的PII控制者和/或PII处理者。
ISO/IEC 27701:2019 This document specifies requirements and provides guidance for establishing, implementing, maintaining and continually improving a Privacy Information Management System (PIMS) in the form of an extension to ISO/IEC 27001 and ISO/IEC 27002 for privacy management within the context of the organization.
This document specifies PIMS-related requirements and provides guidance for PII controllers and PII processors holding responsibility and accountability for PII processing.
This document is applicable to all types and sizes of organizations, including public and private companies, government entities and not-for-profit organizations, which are PII controllers and/or PII processors processing PII within an ISMS.
标准预览图


