티스토리 뷰

Security by design

ISO 27701(PIMS)

JohnK 2019. 11. 19. 08:55

ISO/IEC 27701:2019
Security techniques — Extension to ISO/IEC 27001 and ISO/IEC 27002 for privacy information management — Requirements and guidelines

 

한마디!

간단히 요약해보면 아래와 같다.

(국내 인증) 보안 : ISMS(Information Security Management System)

(국제 인증) 보안 : ISO 27001(Information Security Management System)

(국내 인증) 개인정보보호 : ISMS-P(Personal Information & Information Security Management System, 구 PIMS)

(국제 인증) 개인정보보호 : ISO 27701(Privacy Information Management System)

 

27701은 27001의 확장 버전이라서, 27001만 단독으로 인증 불가

달리 말하면 이미 27001 인증이 있다면 27701은 인증받기 쉽다?

(PIMS was built on top of 27001 because privacy and security go hand-in-hand.)

 

유럽 GDPR(General Data Protection Regulation)

미국 캘리포니아주 CCPA(California Consumer Privacy Act)

적용 받는 기업이라면 챙겨봐야할 국제표준.

 

(참고) https://www.iso.org/standard/71670.html

 

ISO/IEC 27701:2019

Security techniques — Extension to ISO/IEC 27001 and ISO/IEC 27002 for privacy information management — Requirements and guidelines

www.iso.org

(참고) https://www.iso.org/news/ref2419.html

 

Tackling privacy information management head on: first International Standard just published

We are more connected than ever, bringing with it the joys, and risks, of our digital world. Cybersecurity is a growing concern, with attacks against business almost doubling over the last few years1) and is an increasingly significant threat to global sta

www.iso.org

(참고) https://blog.naver.com/n_privacy/221673728908

 

개인정보보호를 위한 새로운 글로벌 표준 ISO/IEC 27701

​​2019년 8월 국제표준화기구(ISO : International Organization for Standardization)는 개인정보...

blog.naver.com

(참고) http://bsiblog.co.kr/archives/13820

 

[ISO 27701] 프라이버시 정보 관리를 위한 최신 국제표준 발행 + 백서 제공 | BSI Blog

BSI Blog

bsiblog.co.kr

(참고) PIMS Introductory Video(Microsoft)

https://www.microsoft.com/en-us/videoplayer/embed/RE3uaQJ

 

https://www.microsoft.com/en-us/videoplayer/embed/RE3uaQJ

 

www.microsoft.com

(참고) Privacy Information Management System ISO/IEC 27701(Microsoft) - PDF

https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE3uDwE

 

(참고) Privacy matters, Managing personal information with ISO/IEC 27701(BSI)

https://www.bsigroup.com/globalassets/localfiles/en-gb/data-protection/bsi_privacy_matters_white_paper-web.pdf

 

(참고) https://youtu.be/upNfVWuSnG8

 

ISO 27701 - Privacy Information Management System | Data Protection

It provides guidance on the protection of privacy, including how organizations should manage personal information, and assists in demonstrating compliance with privacy regulations around the world. The standard outlines a framework for Personally Identifia

www.youtube.com

댓글