AS ISO/IEC 27003:2017 PDF
Adopts ISO/IEC 27003:2017 which provides explanation and guidance on ISO/IEC 27001:2013.
This Standard was prepared by the Australian members of the Joint Standards Australia/Standards New Zealand Committee IT-012, Information Systems, Security and Identification Technology. The objective of this Standard is to provide guidance on the requirements for an information security management system (ISMS) as specified in AS ISO/IEC 27001 and provides recommendations (‘should’), possibilities (‘can’) and permissions (‘may’) in relation to them. It is not the intention of this document to provide general guidance on all aspects of information security.
This Standard is identical with, and has been reproduced from, ISO/IEC 27003:2017, Information technology—Security techniques—Information security management systems—Guidance.