BS PD ISO/IEC TS 33072:2016

Information technology. Process assessment. Process capability assessment model for information security management

BSI Group, 09/30/2016

Publisher: BS

File Format: PDF

$226.00$452.12


Published:30/09/2016

Pages:196

File Size:1 file , 3.6 MB

Note:This product is unavailable in Ukraine, Russia, Belarus

BS PD ISO/IEC TS 33072:2016:
  • defines a process assessment model (PAM) that meets the requirements of ISO/IEC 33004 and that supports the performance of an assessment of process capability by providing indicators for guidance on the interpretation of the process purposes and outcomes as defined in ISO/IEC TS 33052 and the process attributes as defined in ISO/IEC 33020;
  • provides guidance, by example, on the definition, selection and use of assessment indicators.
A PAM comprises a set of indicators of process performance and process capability. The indicators are used as a basis for collecting the objective evidence that enables an assessor to assign ratings. The set of indicators included in this Technical Specification is not intended to be an all-inclusive set nor is it intended to be applicable in its entirety.

The PAM in this Technical Specification is directed at assessment sponsors and competent assessors who wish to select a model, and associated documented process method, for assessment (for either capability determination or process improvement). Additionally it may be of use to developers of assessment models in the construction of their own model, by providing examples of good information security management practices. It can be used by:
  • service providers to assess and improve an Information Security Management System (ISMS);
  • service providers to demonstrate their capability for the design, development, transition and delivery of services that fulfil information security management requirements.
Any PAM meeting the requirements defined in ISO/IEC 33004 concerning models for process assessment can be used for assessment. Different models and methods might be needed to address differing business needs. The assessment model in this Technical Specification meets all the requirements expressed in ISO/IEC 33004.

NOTE Copyright release for the PAM: Users of this Technical Specification may reproduce subclauses 5.2 to 5.27, 6.2, B.2 and B.3 as part of any tool or other material to support the performance of process assessments so that it can be used for its intended purpose.



Cross References:
ISO/IEC IS 12207:2008
ISO/IEC 15289:2011
ISO/IEC 15504-5:2012
ISO/IEC 15504-6:2013
ISO/IEC 20000-1:2011
ISO/IEC TS 20000-4:2010
ISO/IEC TR 24774:2010
ISO/IEC 27001:2013
ISO/IEC 33002:2015
ISO/IEC 33004:2015
ISO/IEC 33020:2015
ISO/IEC TS 33052
ISO/IEC 27000
ISO/IEC 33001


All current amendments available at time of purchase are included with the purchase of this document.

More BS standard pdf

BS 06/30154544 DC

BS 06/30154544 DC

EN 60601-2-2. Medical electrical equipment. Part 2-2. Particular requirements for basic safety and essential performance of high frequency surgical equipment and high frequency surgical accessories

$113.00 $227.97

BS PAS 77:2006

BS PAS 77:2006

IT Service Continuity Management. Code of Practice

$31.00 $62.23

BS 06/30154500 DC

BS 06/30154500 DC

EN 15551. Railway applications. Freight wagons. Buffers

$135.00 $270.23

BS 06/30154576 DC

BS 06/30154576 DC

EN ISO 17226-2. Leather. Chemical tests. Part 2. Determination of formaldehyde content in leather by colourimetric analysis

$103.00 $206.68