スライド 1

Size: px
Start display at page:

Download "スライド 1"

Transcription

1 NIST SP800 BCPContingency Contingency Planning

2 1. IPAIPA 2. BCP/BCM 3. NIST SP800 FISMA 4. SP SP IT Contingency Planning Guide for Information Technology Systems IT January

3 3 BCP/BCM BCM BCP BCP BCP BCPBCM ITIT

4 4 BCP,SARS NFPA 1600:2004 Annex A (Explanatory Material BCP BCPIT-BCP BCP = IT-BCP IT-BCPBCP/BCM

5 1. IPAIPA 2. BCP/BCM 3. NIST SP800 FISMA 4. SP SP IT Contingency Planning Guide for Information Technology Systems IT January

6 NIST : National Institute of Standards and Technology SP Contingency Planning Guide for Information Technology Systems IT (June 2002) SP Computer Security Incident Handling Guide (January 2004) SP Guide to Malware Incident Prevention and Handling (November 2005) SP Recommended Security Controls for Federal Information Systems (February 2005) FIPS 199 Standards for Security Categorization of Federal Information and Information Systems (February 2004 Draft SP Rev1, Guide for Information Security Program Assessments and System Reporting Form (August 15, 2005) (SP Security Self-Assessment Guide for Information Technology Systems (November 2001)) IT Draft SP A: Guide for Assessing the Security Controls in Federal Information Systems (July 15,2005) SP Risk Management Guide for Information Technology Systems (July 2002) IT 6

7 publications/nist/index.html 7 NIST : National Institute of Standards and Technology SP800: SP=Special Publications NIST CSD (Computer Security Division) IT NIST CSD: FIPS: Federal Information Processing Standards NIST

8 FISMA Each federal agency shall develop, document, and implement an agency-wide information security program to provide information security for the information and information systems that support the operations and assets of the agency, including those provided or managed by another agency, contractor, or other source --- Federal Information Security Management Act of 2002 (Title III of the E-Government Act) NISTFISMA FISMA I FISMAFIPS(SP 1-2 II 2006 III Flagship StandardFIPS199 (FIPS: Federal Information Processing Standards ) FIPS/SP: 8

9 9

10 1. IPAIPA 2. BCP/BCM 3. NIST SP800 FISMA 4. SP SP IT Contingency Planning Guide for Information Technology Systems IT January

11 Recommended Security Controls for Federal Information Systems (February 2005) No. SP SP Annex 1 SP Annex 2 SP Annex 3 2:

12 SP RA PL SA CA PS PE (Contingency Planning) CP CM MA SI MP (Incident Response) IR AT IA CP-1 CP-2 CP-3 CP-4 CP-5 CP-6 CP-7 CP-8 CP-9 CP-10 AC * AU SC 12

13 ISO/IEC Information security aspects of business continuity management () Including information security in the business continuity management process () Business continuity and risk assessment () Developing and implementing continuity plans including information security ( ) Business continuity planning framework () Testing, maintaining and re-assessing business continuity plans () 13

14 14 SP F: CP-9 CP-9 CP-9 (1) CP-9 (1) (2) (3)

15 15 SP D() CP-1 CP-1 CP-1 CP-1 CP-2 CP-2 CP-2 (1) CP-2 (1) CP-3 CP-3 CP-3 (1) CP-4 CP-4 (1) CP-4 (1) (2) CP-5 CP-5 CP-5 CP-5 CP-6 CP-6 (1) CP-6 (1) (2) (3) CP-7 CP-7 (1) (2) (3) CP-7 (1) (2) (3) (4) CP-8 CP-8 (1) (2) CP-8 (1) (2) (3) (4) CP-9 CP-9 CP-9 (1) CP-9 (1) (2) (3) CP-10 CP-10 CP-10 CP-10 (1) IR-1 IR-1 IR-1 IR-1 IR-2 IR-2 IR-2 (1) (2) IR-3 IR-3 IR-3 (1) IR-4 IR-4 IR-4 (1) IR-4 (1) IR-5 IR-5 IR-5 (1) IR-6 IR-6 IR-6 (1) IR-6 (1) IR-7 IR-7 IR-7 (1) IR-7 (1) FIPS199 SP SP800-53

16 - SP G: ( ISO NIST GAO FISCAM DOD DCID 6/3 CP , , CP , , COBR-1 DCAR , , , , SC-3.1 SC-1.1 CODP-1 COEF-1 2.B.4.e(5) 6.B.1.a(1) 6.B.2.b(1) CP SC-2.3 PRTN-1 8.B.1 CP , , SC-3.1 COED-1 6.B.3.b(2)(b) CP , , SC-2.1 SC-3.1 DCAR-1 6.B.3.b(2) CP , , SC-2.1 SC-3.1 CODB-2 6.B.2.a(2) 6.B.3.a(2)(d) CP , 9.2.4, 9.2.5, 9.2.7, 9.2.9, SC-2.1 SC-3.1 COAS-1, COEB-1 COSP-1, COSP-2 6.B.3.a(2)(d) CP B.2.a(4) CP , , 9.2.6, 9.2.9, 9.3.1, SC-2.1 CODB-1, CODB-2 COSW-1 6.B.1.a(2) CP SC-2.1 COTR-1, ECND-1 4.B.1.a(4) 6.B.1.a(1) 6.B.2.a(3)(d) 16

17 SP : SP ISO/IEC FDIS 17799:2004/11/28 CP-1 CP-2 CP-3 Contingency planning policy and procedures Contingency plan Contingency training Information security policy document Controls against malicious code Including information security in the business continuity management process Developing and implementing continuity plans including information security Identification of applicable legislation System acceptance Controls against malicious code Business information systems Developing and implementing continuity plans including information security Business continuity planning framework Developing and implementing continuity plans including information security Business continuity planning framework CP-4 CP-5 CP-6 CP-7 CP-8 CP-9 CP-10 Contingency plan testing Contingency plan update Alternate storage Alternate processing sites Telecommunications services Information system backup Information system recovery and reconstitution Information back-up Testing, maintaining and re-assessing business continuity plans Developing and implementing continuity plans including information security Testing, maintaining and re-assessing business continuity plans Information back-up Business continuity planning framework Business continuity planning framework Information back-up Mobile computing and communications Business continuity planning framework 17

18 18 ISO/IEC17799:2005, NIST SP ISO/IEC17799:2005

19 19 IT-BCP SP CP(IR ITBCP BCMITBCP SDLCSystem Development Life Cycle IT SP Contingency Planning Guide for Information Technology Systems IT(January 2004) 107 pages SP Computer Security Incident Handling Guide (January 2004) 148 pages SP Guide to Malware Incident Prevention and Handling (November 2005) 101 pages SP An Introduction to Computer Security: The NIST Handbook (October 1995) 11 Preparing for Contingencies and Disasters

20 1. IPAIPA 2. BCP/BCM 3. NIST SP800 FISMA 4. SP SP IT Contingency Planning Guide for Information Technology Systems IT January

21 21 SP800-34: IT IT (1) (2) (3) (4) (5)IT (6) (7) 6. 7.

22 SP IT IT IT IT IT LAN WAN IT IT IT IT 22

23 SP BCPプロセス全体における IT緊急時対応計画の位置づけ 事業継続計画 (BCP) 説明 施設 IT ビジネス 特に重要 Copyright 2006 独立行政法人 情報処理推進機構 23

24 24 SP800-34BCP IT ITSP IT BCP IT BRP ITIT COOP 30 IT / IT ITIT IT DRP IT OEP IT

25 SP SP SP Risk Management Guide for Information Technology Systems IT 25

26 26 SP800-34IT IT - SP IT IT SP SP Computer Security Incident Handling Guide (January 2004) SP Guide to Malware Incident Prevention and Handling (November 2005)

27 SP (SDLC) / SDLC SDLCSystem Development Life Cycle IT / / SP SP Security Considerations in the Information System Development Life Cycle NIST CSD SDLC Web Information Security in the SDLC Brochure 27

28 SP IT

29 29 SP

30 SP B 30 50LAN IT A. B. C. D. E. A.

31 31 SP ) 2) 3) 4) 5)

32 32 SP IT 5 6 ( / / 7

33 SP AIT / IT 33

34 34 SP IT SP IT

35 SP SLA

36 SP D IT : URL( : : : Disaster Recovery Institute International: Disaster Recovery Journal: : 36

37 まとめ FIPS200/ SP セキュリティ管理の 選択 開始点 FIPS199/ SP SP セキュリティの 分類 SP800-53/ FIPS200/SP 選択したセキュリ ティ管理の調整 SP セキュリティ管理策 の文書化 SP システム運用の 承認 SP セキュリティ管理策 の導入 SP800-53A/SP80026/SP セキュリティ管理策 の評価 FISMA リスクマネジメントフレームワーク FIPS199 SP 維 セキュリティ分類 管理策の選定 持 運用継続計画 (COOP) 保 SP IT緊急時対応計画 SP IT-BCPを組織全体 のBCP/BCMとどう 連携させるか どの ように位置づけて機 能させるかを考える ことで BCPへの理 解や取組みが進む セキュリティ管理策 実施状況の監視 サイバーインシデント 対応計画 人員緊急時計画 (OEP) インシデント対応 事業継続計画 (BCP) 護 事業継続は 情報セキュリティ対策 において重要な対策項目である サポート継続計画/ IT緊急時対応計画 緊急時コミュニケー ション計画 災害復旧計画 (DRP) 事業復旧 再開 計画 (BRP) 開 説明 再 施設 IT ビジネス Copyright 2006 独立行政法人 情報処理推進機構 特に重要 復 旧 各種計画の相互関連性 37

38 IPA/ISEC 38

金融機関の業務継続強化に向けた課題と対応

金融機関の業務継続強化に向けた課題と対応 1 2 95/1 95/1 02/4 04/10 06/8 03/2 05/7 05/8 01/9 03/8 3 4 5 6 7 8 3 9 10 11 16/91114/810 16861468 12 13 14 18/45 11138 15 2 16 17 18 19 SARS 20 21 BCP BCM Business Continuity Plan Business Continuity

More information

1 基本的考え方

1 基本的考え方 ... 1 1.1. BCP(Business Continuity Plan) 1 1.2. BCP 2 1.3. BCP 6 1.4. 9... 10 2.1. BCP 10 2.2. 11 2.3. 12 2.4. BCP 14 2.5. BCP 15 BCP... 17 3.1. 17 3.3. BCP 19 3.4. 22 3.5. 24 3.6. 25 3.7. 26... 28 4.1.

More information

untitled

untitled 1 BCP(Business Continuity Plan) 1 BCP 2 BCP 6 9 10 BCP 10 11 BCP 12 BCP 15 BCP 16 BCP 17 17 BCP 18 BCP 19 22 24 25 26 28 28 33 37 BCP 41 BCP BCP BCP BCP BCP BCP(Business Continuity Plan) 1 2 BCPBusiness

More information

スライド 1

スライド 1 FISMA 1 1 2 3 4 1 ISO/IEC 27001) (27003,27004,27007 3416 2010 2 ) IPA 5 6 7 http://csrc.nist.gov/groups/sma/fisma/index.html 8 9 (2003-2008) 2008) 10 SP 800-53 FISMA SP 800-53 GISRA FISMA 2002/12/17 SP

More information

ISMSクラウドセキュリティ認証の概要

ISMSクラウドセキュリティ認証の概要 Copyright JIPDEC ISMS, 2016 1 ISMS ISO/IEC 27017:2015 Copyright JIPDEC ISMS, 2016 2 JIS Q 27001(ISO/IEC 27001) ISO/IEC 27017 ISMS ISO/IEC 27017 ISO/IEC 27002 Copyright JIPDEC ISMS, 2016 3 ISO/IEC 27017:2015

More information

73-5 大友

73-5 大友 373 73 5 20 9 373 377 Journal of the Japanese Association for Petroleum Technology Vol. 73, No. 5 Sept., 2008 pp. 373 377 Lecture HSQE * ** Received July 31, 2008 accepted September 11, 2008 Implementation

More information

橡セキュリティポリシー雛形策定に関する調査報告書

橡セキュリティポリシー雛形策定に関する調査報告書 13 2 KM 12 7 10 ISO/IEC TR 13335 Techniques for the Management of IT Security ISO/IEC 15408 Evaluation Criteria for IT Security BS7799 A Code of Practice for Information Security Management RFC2196 Site

More information

GOVERNOR'S No.1 JULY 2 GOVERNOR'S No.1 JULY 3 GOVERNOR'S No.1 JULY 4 GOVERNOR'S No.1 JULY 5 GOVERNOR'S No.1 JULY 6 GOVERNOR'S No.1 JULY 7 GOVERNOR'S No.1 JULY 8 GOVERNOR'S No.1 JULY 9 GOVERNOR'S No.1 JULY

More information

1 May 2011

1 May 2011 1 May 2011 2 May 2011 3 May 2011 4 May 2011 5 June 2011 6 June 2011 7 June 2011 8 June 2011 9 July 2011 10 July 2011 11 July 2011 12 July 2011 13 August 2011 14 August 2011 15 August 2011 16 August 2011

More information

38 22-13 -

38 22-13 - 2-12 - 38 22-13 - - 14 - - 15 - Business Continuity Plan - 16 - - 17 - - 18 - - 19 - - 20 - - 21 - - 22 - - 23 - - 24 - - 25 - ( ) ( ) - 26 - - 27 - 4 ( - 28 - - 29 - 10 1,000 400 50-30 - 10-31 - 11-32

More information

Information Security Management System ISO/IEC 27001:2005 ISMS A Copyright JIPDEC ISMS,

Information Security Management System ISO/IEC 27001:2005 ISMS A Copyright JIPDEC ISMS, Information Security Management System ISMS ISO/IEC 27001 ISMS () ISMS ISMS 200512 Copyright JIPDEC ISMS, 2005 1 Information Security Management System ISO/IEC 27001:2005 ISMS A Copyright JIPDEC ISMS,

More information

アニュアルレポート2010

アニュアルレポート2010 Annual Annual Report 2010 Report 0 2010 3 2010 01 1 0 ision Mission 2 3 2009 4 4 6 8 10 CEO COO CFO CRO 18 18 20 22 2009 2010 12 26 12 30 15 32 Contents 2009 CEO http://www.nissan-global.com/jp/ir/library/ar/

More information

untitled

untitled NPO JNSA 3,500() 2003122 ISBN4-8443-1858-6 Copyright (c) 2003-2004 NPO Page 2 個人情報の社会状況 DMがよく届く 不正アクセス ウイルス 内部からの漏洩 電話勧誘が多い 外部 (インターネット) からの漏洩 サービス利用 名簿業者など 個人情報の提供 事業者 個人情報の売買 漏洩 情報主体 (本人) 何から行なえば良いか

More information

美唄市広報メロディー2014年1月号

美唄市広報メロディー2014年1月号 1 2014 E-mailkouhoujouhou@city.bibai.lg.jp January May September October November December February March June July August April BIBAI CITY INFORMATION http://db.net-bibai.co.jp/bibai/

More information

量販店向けPOSシステムサービス:TeamCloud/M

量販店向けPOSシステムサービス:TeamCloud/M POS TeamCloud/M POS System Service for Mass Merchandisers: TeamCloud/M 近藤卓雅 河添直樹 森誠司 山本一樹 米山淳一 あらまし ICT POS Point Of Sale 2012 2 POSPOS TeamCloud/M Abstract Fujitsu Frontech s Retail Outsourcing Services

More information

MEISEI HEROES HERO HERO HERO MEISEI HEROES

MEISEI HEROES HERO HERO HERO MEISEI HEROES MEISEI HEROES MEISEI HEROES HERO HERO HERO MEISEI HEROES 04 INDEX 06 28 08 24 26 10 14 16 22 18 20 MEISEI HEROES 05 04 MEISEI HEROES 2014 SCHOOL GUIDE MEISEI HEROES 1 2 3 4 5 06 MEISEI HEROES 2014 SCHOOL

More information

2011上宮太子_高校_学校案内

2011上宮太子_高校_学校案内 UENOMIYA TAISHI SENIOR HIGH SCHOOL GUIDE BOOK 2011 www.uenomiya-taishi.ed.jp Curriculum Curriculum Letʼs enjoy school life at UT! 01 02 4 April 5 May 6 June 7 July 03 8 9 10 11 August September October

More information

November 13 June 1 April 23 October 1 December 22 August 6 September 5 July 2 May 2 8 6 11 1 7 01 1516 4 23 4 1995 4 23 1999 4 23 19 2 02 88 5 2 3 03 6 1 6 1 300 4 04 100 7 2 7 2 706 15 2 5 05 8 6 86

More information

SOZO_経営_PDF用.indd

SOZO_経営_PDF用.indd Faculty of Business Administration Department of Business Administration CONTENTS ADMISSION POLICY 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 INTERNET SOZO Wireless Network 16 Campus Life Calendar APRIL MAY JUNE

More information

スライド 1

スライド 1 Asian Inter-regional Professional Securities Market 200761 NIRA 20006 2002/6 2006/5 2009/1 2003/4 CP 2006/1 2007/1 2004/5 DVP 9/11 T+1 T+3 Customer First, Information Technology, Global Standard, Contestability

More information

<346B5F BC8CC389AE91E58A AD985F8F D A967B95B62E696E6462>

<346B5F BC8CC389AE91E58A AD985F8F D A967B95B62E696E6462> BCP BCM 2016 4 11 130 2013 3 BCP BCM * 2016 2016 BCP BCM 2016 270 2017 369 1 2 3 1BCP 2 3 BCP 3 1 1 2016 4 11 130 2 BCP 3 BCM 4 1 AERA 2016 5 2 9 2 20162016 3 Business Continuity Plan 4 Business Continuity

More information

SA B A B ( A B ) AB( A B) AB AB S A B A B A B A B ( A B ) ( A B) (S A) (S B) S ( A B) ( y 1 + y 2 + y 3 + y 5 ) mod2( y 1 + y 2 + y 4 + y 6 ) mod2( y

SA B A B ( A B ) AB( A B) AB AB S A B A B A B A B ( A B ) ( A B) (S A) (S B) S ( A B) ( y 1 + y 2 + y 3 + y 5 ) mod2( y 1 + y 2 + y 4 + y 6 ) mod2( y S A BA B A B A B A B A B A S A A BAB A B ( A B ) ( A B) ( S A ) ( S B ) S ( A B) 4x 1 x 2 x 3 x 4 ( x 1 + x 2 + x 3 + x 5 ) mod2 = 0 ( x 1 + x 2 + x 4 + x 6 ) mod2 = 0 ( x 2 + x 3 + x 4 + x 7 ) mod2 =

More information

2 1 図 2 連邦政府と地方との役割分担 ( 出典 :FEMA) 2 2. 米国の危機管理システムの変遷 1950 Disaster Relief Act Civil Defense Act National Flood Insurance Act

2 1 図 2 連邦政府と地方との役割分担 ( 出典 :FEMA) 2 2. 米国の危機管理システムの変遷 1950 Disaster Relief Act Civil Defense Act National Flood Insurance Act 特集 : 大規模災害と社会保障 Ⅱ 災害発生時における危機対応システム - 米国の事例に学ぶ - 牧紀男 要約本稿は 被害軽減 (preparedness) を中心とした危機対応から 被害抑止 (mitigation) 災害復興 (recovery) までも含めた総合的な防災対策を構築していっている米国の事例から 東日本大震災の教訓を踏まえた新たな日本の危機管理対策のあり方について考えるものである

More information

情報セキュリティの現状と課題

情報セキュリティの現状と課題 443 IT IT 1 1 2 3 4 1 OECD( 1992 Confidentiality Integrity Availability 2 2000.2. http://www.npa.go.jp/hightech/sec_taikei/taikei.htm 3 2000.12. http://www.kantei.go.jp/jp/it/security/taisaku/2000_1215/1215actionplan.html

More information

Vol.54 No (Mar. 2013) 1,a) , A Case Study of the Publication of Information on the Japan Earthquake Naoto Matsumoto 1,a

Vol.54 No (Mar. 2013) 1,a) , A Case Study of the Publication of Information on the Japan Earthquake Naoto Matsumoto 1,a 1,a) 2012 6 1, 2012 12 20 A Case Study of the Publication of Information on the Japan Earthquake Naoto Matsumoto 1,a) Received: June 1, 2012, Accepted: December 20, 2012 Abstract: On the disasters, the

More information

DISASTER MANAGEMENT IN JAPAN CONTENTS 1 2 The Nation and Its Disasters A Disaster-prone Country 1 The General Disaster Situation 2 4 7 Progress in Dis

DISASTER MANAGEMENT IN JAPAN CONTENTS 1 2 The Nation and Its Disasters A Disaster-prone Country 1 The General Disaster Situation 2 4 7 Progress in Dis DISASTER MANAGEMENT IN JAPAN CABINET OFFICE GOVERNMENT OF JAPAN DISASTER MANAGEMENT IN JAPAN CONTENTS 1 2 The Nation and Its Disasters A Disaster-prone Country 1 The General Disaster Situation 2 4 7 Progress

More information

EU RMap

EU RMap 20 3 1. 1.1 1 1.2 1 1.3 2 2. 2.1 4 2.2 4 2.3 5 3. 3.1 6 3.2 EU 6 3.3 7 3.4 7 4. 4.1 8 4.2 8 4.3 8 5. 5.1 11 5.2 12 18 35 RMap 52 82 84 1 1.1. 1.2 (1) (2) 2 (3) 1.3 3 4 2. R-Map 2.1 EU ISO/IEC 51 EU 2.2

More information

untitled

untitled GITA-JAPAN How to Use GIS Effectively for Disaster Response Lessons Learned from the 2004 Niigataken-Chuetsu Earthquake Disaster Management Cycle Disaster Impact Risk Transference() Risk Acceptance Preparedness

More information

Web Microsoft 2008 R2 Database Database!! Database 04 08

Web   Microsoft 2008 R2 Database Database!! Database 04 08 Database Database Web http://www.microsoft.com/japan/sqlserver/2008/r2/solution/comparison/default.mspx Microsoft 2008 R2 Database Database!! 03 2009 6 1 Database 04 08 vs. Database 12 2008 R2 5 14! 5!

More information

情報分野のアクセシビリティ標準について

情報分野のアクセシビリティ標準について 情報分野のアクセシビリティ標準について 経済産業省国際電気標準課 小出啓介 Agenda 1. 障害者白書 2. JTC 1/SC 35 で開発しているアクセシビリティ関連規格の紹介 3. 映像字幕事業 (ISO/IEC 20071-23) の取り組みの紹介 4. JIS X 8341-3 の改正について 5. Web Accessibility, BSI Code of Practice 規格の開発と国内対応について

More information

Ł\”ƒ1PDFŠp

Ł\”ƒ1PDFŠp 73 88 Takeshi MIZUGUCHI This article investigates several studies, proposals and practices regarding environmental accounting and environmental information disclosure. Objects of the investigation include

More information

3論説_高橋.indd

3論説_高橋.indd 2001 89 2006 543 5 6 2001 7 2006 59 5 8 2007: 60 Kingsoft Office 2007 1) 29 1999 2001 Tschang and Xue 2003 Li and Gao 2003 Wong and Wong 2004Yang et al. 2005 Shi et al. 2005 Wu and Miyazaki 2006 IT Li

More information

本文/YAZ172P

本文/YAZ172P 2004 2005 2006 2007 Committee of Sponsoring Organizations of Treadway Commission COSO 1992 Internal Control-Integrated Framework COSO 1 1 COSO 2009 7 27 2009 9 11 21 1956 1980 1986 MBA 1980 2006 1990 1993

More information

CIA+

CIA+ ECOM 200511 e ECOM CIA+ Integrity Confidentiality Availability Phishing fishing http://www.nikkeibp.co.jp/ http://www.nikeibp.co.jp/ DoSDenial of Service DoS IT IT ROI 1/2 2/2 DMZ IT TESEC( Common

More information

untitled

untitled Quantitative Risk Assessment on the Public Health Impact of Pathogenic Vibrio parahaemolyticus in Raw Oyster 1 15 5 23 48 2 21 1 16 1 16 1 11 3 1 3 4 23 1 2 16 12 16 5 6 Hazard IdentificationExposure

More information

5005-toku3.indd

5005-toku3.indd 3 1 CMMICMM Capability Maturity Model ISO : International Organization for Standardization IEC : International Electrotechnical CommissionJTC1 : Joint Technical Committee 1SC7 : Sub Committee 7 SC7 WG

More information

<4D F736F F D20838A B F955C8E8682A982E796DA8E9F914F5F A815B FD B A5F E646F63>

<4D F736F F D20838A B F955C8E8682A982E796DA8E9F914F5F A815B FD B A5F E646F63> 2008 年度版リストガイド ( メッセージ認証コード ) 平成 21 年 3 月 独立行政法人情報通信研究機構独立行政法人情報処理推進機構 1 1 1.1............................. 1 1.1.1............................ 1 1.1.2....................... 1 1.1.3...........................

More information

Copyright

Copyright 2004 Copyright 2004 Copyright 2004 2 . Copyright 2004 3 . Copyright 2004 4 Copyright 2004 5 (1) (2) (3) (4) Copyright 2004 6 ISO/IEC17799 127 JRMS Copyright 2004 7 Copyright 2004 8 Copyright 2004 9 Copyright

More information

Copyright Compita Japan ISO33k シリーズとは? これまで使用されてきたプロセスアセスメント標準 (ISO/IEC 本稿では以降 ISO15504 と略称する ) は 2006 年に基本セットが完成し 既に 8 年以上が経過しています ISO

Copyright Compita Japan ISO33k シリーズとは? これまで使用されてきたプロセスアセスメント標準 (ISO/IEC 本稿では以降 ISO15504 と略称する ) は 2006 年に基本セットが完成し 既に 8 年以上が経過しています ISO 新アセスメント規格 ISO 33K シリーズの概要 2015 年 4 月 9 日 コンピータジャパン Copyright Compita Japan 2015 2 ISO33k シリーズとは? これまで使用されてきたプロセスアセスメント標準 (ISO/IEC 15504 - 本稿では以降 ISO15504 と略称する ) は 2006 年に基本セットが完成し 既に 8 年以上が経過しています ISO15504

More information

NPO 1990 NPO NPO 12 8,000 NPO NPO NPO NPO NPO NPO NPO 4 NPO 1.1 1.8 5 NPO NPO 4 NPO NPO 27 22 NPO NPO 5 2001 2001 15-17

NPO 1990 NPO NPO 12 8,000 NPO NPO NPO NPO NPO NPO NPO 4 NPO 1.1 1.8 5 NPO NPO 4 NPO NPO 27 22 NPO NPO 5 2001 2001 15-17 NPO 1 2 12 7,000 3 NPO NPO NPO NPO NPO NPO NPO NPO 1 1995 2 3 12 2000 NPO 1990 NPO NPO 12 8,000 NPO NPO NPO NPO NPO NPO NPO 4 NPO 1.1 1.8 5 NPO NPO 4 NPO NPO 27 22 NPO NPO 5 2001 2001 15-17 NPO 6 NPO NPO

More information

MORALITY LEARNING AMBITION 2 KASUMIGAOKA

MORALITY LEARNING AMBITION 2 KASUMIGAOKA KASUMIGAOKA MORALITY LEARNING AMBITION 2 KASUMIGAOKA KASUMIGAOKA 3 4 KASUMIGAOKA KASUMIGAOKA 5 Super Science High School 6 KASUMIGAOKA School Life 4 April 5 May 6 June 7 July 8 August 9 September 10 October

More information

untitled

untitled Copyright 2008 IPAAll Rights Reserved 1 1. 2. 3. Copyright 2008 IPAAll Rights Reserved 2 IT IT IT Copyright 2008 IPAAll Rights Reserved http://www.jitec.jp/1_00topic/topic_20071225_shinseido.html 3 URL

More information

bousai-guidebook-3

bousai-guidebook-3 DISASTER- PREVENTION GUIDEBOOK FOR FOREIGN RESIDENTS 岸 和 田 市 国 際 親 善 協 会 The International Friendship Association of Kishiwada 1 1 2 2 3 4 5 6 7 8 9 For those who need a support for evacuation activities

More information

01-全体表紙.PDF

01-全体表紙.PDF 1 2005 11 26 1 1 5 15 18 1 1. 2005 11 26 09 00 1245 12 45 18207 2. 1,000 2,000 3. 4,000 2,000 5,000 4. 10,000 2,000 30,000 5. 1 20 10 1300 17 00 1500 1700 6. 7. TEL 047-372-4111 821 FAX 047-373-9901 E-MailAPI-jimu@cuc.ac.jp

More information

EURAMET EURAMET/cg-15/v.01 "Guidelines on the Calibration of Digital Multimeters" EURAMET e.v. "General Conditions for the translation of EURAMET publ

EURAMET EURAMET/cg-15/v.01 Guidelines on the Calibration of Digital Multimeters EURAMET e.v. General Conditions for the translation of EURAMET publ JAB RL508-2010 20100405 2010-04-05-1/22-0 2010-04-05 EURAMET EURAMET/cg-15/v.01 "Guidelines on the Calibration of Digital Multimeters" EURAMET e.v. "General Conditions for the translation of EURAMET publications"

More information

/02/ /09/ /05/ /02/ CA /11/09 OCSP SubjectAltName /12/02 SECOM Passport for Web SR

/02/ /09/ /05/ /02/ CA /11/09 OCSP SubjectAltName /12/02 SECOM Passport for Web SR for Web SR Certificate Policy Version 2.50 2017 5 23 1.00 2008/02/25 1.10 2008/09/19 1.20 2009/05/13 5 1.30 2012/02/15 5.6 CA 1.40 2012/11/09 OCSP SubjectAltName 2.00 2013/12/02 SECOM Passport for Web

More information

参考資料 1 既存のセキュリティ 要求基準について ISO/IEC 27017:2015 ( クラウドサービスのための情報セキュリティ管理策の実践の規範 )

参考資料 1 既存のセキュリティ 要求基準について ISO/IEC 27017:2015 ( クラウドサービスのための情報セキュリティ管理策の実践の規範 ) 参考資料 1 既存のセキュリティ 要求基準について ISO/IEC 27017:2015 ( クラウドサービスのための情報セキュリティ管理策の実践の規範 ) 参考情報 Ⅰ: ISO/IEC 27017:2015 項番 / 管理策 5. 情報セキュリティのための方針群 (Information security policies) 昨年度検討との関連 5.1.1 情報セキュリティのための方針群 (Policies

More information

日立 統合報告書 2017 (2017年3月期)

日立 統合報告書 2017 (2017年3月期) MANAGEMENT & 2017 6 01 1972 Bharat Forge Limited 1983 1994 1997 2016 02 1991 Alcan Inc. 1996 1998 2002 CEO 2007 Anglo American plc. CEO 2013 4 2013 03 2002 2010 2013 2014 2015 2017 04 1993 Emerson Electric

More information

YUHO

YUHO -1- -2- -3- -4- -5- -6- -7- -8- -9- -10- -11- -12- -13- -14- -15- -16- -17- -18- -19- -20- -21- -22- -23- -24- -25- -26- -27- -28- -29- -30- -31- -32- -33- -34- -35- -36- -37- -38- -39- -40- -41- -42-

More information

/07/ /10/12 I

/07/ /10/12 I Certificate Policy Version 1.10 2018 10 12 1.00 2018/07/24 1.10 2018/10/12 I 1.... 1 1.1... 1 1.2... 1 1.3 PKI... 2 1.3.1 CA... 2 1.3.2 RA... 2 1.3.3... 2 1.3.3.1... 2 1.3.3.2... 3 1.3.4... 3 1.3.5...

More information

第33回鋼構造基礎講座 鋼橋の架設および解体撤去工法-より一層の安全性と品質の向上に向けて-

第33回鋼構造基礎講座 鋼橋の架設および解体撤去工法-より一層の安全性と品質の向上に向けて- 1 2 600000 500000 400000 300000 200000 117910 100000 15058 0 33343536373839404142434445464748495051525354555657585960616263 2 3 4 5 6 7 8 9 10111213141516171819202122232425262728 3 140000 200 120000 100000

More information

untitled

untitled 2 IMDRFInternational Medical Device Regulators Forum/SaMD WG/N12FINAL:2014 Title "Software as a Medical Device": Possible Framework for Risk Categorization and Corresponding Considerations Authoring

More information

制御システムセキュリティアセスメントサービス

制御システムセキュリティアセスメントサービス Japan Computer Emergency Response Team Coordination Center 電子署名者 : Japan Computer Emergency Response Team Coordination Center DN : c=jp, st=tokyo, l=chiyoda-ku, email=office@jpcert.or.jp, o=japan Computer

More information

1.... 1 2.... 2 2.1.... 2 2.2.... 4 2.3.... 7 3.... 9 3.1.... 9 3.1.1.... 10 3.1.2.... 11 3.1.3.... 13 3.1.4.... 15 3.1.5.... 16 3.1.6.... 17 3.2.... 18 3.2.1.... 19 3.2.2.... 20 3.2.3.... 20 3.2.4....

More information

表紙1

表紙1 Graduate School of Engineering Nagasaki Institute of Applied Science Graduate School of Engineering Nagasaki Institute of Applied Science Institute for Innovative Science and Technology Doctoral Program

More information

Microsoft PowerPoint - SeminarNaft-I-Re.IntISMS&Standards-V

Microsoft PowerPoint - SeminarNaft-I-Re.IntISMS&Standards-V 1 71 71 71 7 1 71 7 1 71 7 1 71 7 1 7 1 7 ISO/IEC 27001:2005 2005 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 7 1 7 : 1 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71

More information

2-工業会活動.indd

2-工業会活動.indd 工業会活動 ~SAE(Society of Automotive Engineers) 委員会参加報告 ~ 1. はじめに SAE RTCA Radio Technical Commission for Aeronautics ARINC Aeronautical Radio, Incorporated SAE RTCA ARINC FAA Federal Aviation Administration

More information

Oracle Change Management Pack, Oracle Diagnostics Pack, Oracle Tuning Packインストレーション・ガイド リリース2.2

Oracle Change Management Pack, Oracle Diagnostics Pack, Oracle Tuning Packインストレーション・ガイド リリース2.2 Oracle Enterprise Manager Oracle Change Management Pack, Oracle Diagnostics Pack, Oracle Tuning Pack 2.2 2000 11 : J02263-01 Oracle Change Management Pack, Oracle Diagnostics Pack, Oracle Tuning Pack 2.2

More information

<4D F736F F F696E74202D A8E5289BA5F4A4E E D FEE95F1835A834C A AA96EC82CC8D918DDB95578F8082CC93AE8CFC2E >

<4D F736F F F696E74202D A8E5289BA5F4A4E E D FEE95F1835A834C A AA96EC82CC8D918DDB95578F8082CC93AE8CFC2E > 情報セキュリティの国際標準の動向 - ISO/IEC 27002 と外部委託関連の標準を中心に - 富士通株式会社 IT 戦略本部 山下真 ISO/IEC JTC 1/SC 27 WG 1 国内幹事 WG 4 国内委員 2013 年 1 月 25 日 Copyright SC 27/WG 1, WG 4 Japan, 2013 本日取り上げる標準 SC 27/WG 1 ISO/IEC 27002 Information

More information

Microsoft Word - 査読SP問題110510RR.doc

Microsoft Word - 査読SP問題110510RR.doc JAVCERM Journal [] 2 # 2011_01_Ronko 2010 1 4 2011 5 12 1 2 2 1999 National Bank of Keystone(Keystone), Pacific Thrift and Loan(PLT) FDIC CAMEAL 20 20 1 11 6 2.2 2000 Greenspan FRB 2000 IT IT Greenspan[2004]

More information

内部監査で検討すべき10のIT項目

内部監査で検討すべき10のIT項目 Insights on governance, risk and compliance 10 IT IT ...2...4...6...8...10 IT...12...14 IT...16...18...20...22...24 iii Insights on governance, risk and compliance IT IT??? IT 10 IT 10 IT Insights on governance,

More information

112007/ ,000 14,

112007/ ,000 14, 11 2007 5 181114 14 18 3 2 8 7 1 14 4 18 3 27 2 1 1 12 4 2 2 1313 4 2 8 7 10 50 7 7 20 10200 8 11 1 1 112007/5 12 12 12 470 3 3 1 2 3 183,000 14,000 30 4 5 3 4 1 1 2 3 4 6 23 2 112007/5 7 1 1 1 2 3 1 1

More information

- - - - Central Processing Unit 2

- - - - Central Processing Unit 2 13:50 14:30 "Competition Policy in Network Industries" http://www.stern.nyu/edu NET Institute http://www.netinst.org Institute 2 1 Business to Business to Customer yellow pages Yahoo Google 1 1 - - - -

More information

No.7, (2006) A Survey of Legislation Regarding Environmental Information in Europe and Japan IWATA Motokazu Nihon University, Graduate School of

No.7, (2006) A Survey of Legislation Regarding Environmental Information in Europe and Japan IWATA Motokazu Nihon University, Graduate School of No.7, 35-44 (2006) A Survey of Legislation Regarding Environmental Information in Europe and Japan IWATA Motokazu Nihon University, Graduate School of Social and Cultural Studies As Principle 10 of the

More information

Information Security Management System ISMS Copyright JIPDEC ISMS,

Information Security Management System ISMS Copyright JIPDEC ISMS, ISMS Copyright JIPDEC ISMS, 2005 1 Copyright JIPDEC ISMS, 2005 2 Copyright JIPDEC ISMS, 2005 3 Copyright JIPDEC ISMS, 2005 4 ISO JIS JIS ISO JIS JIS JIS ISO JIS JIS 22 23 ISO SC27 ISO SC27 ISO/IEC 17799

More information

Research on Academic Degrees and University Evaluation The Chronicle of Higher Education Chronicle Analytical Perspectives Research Centers Directory Research Centers Directory Administrative Policies

More information

untitled

untitled CONTENTS 002 004 006 26 008 26 011 PART 1 012 26 013 015 017 019 020 MCEV 023 027 PART 2 028 030 034 036 LiPSS 038 040 042 043 046 050 053 059 PART 3 060 ERMEnterprise Risk Management 062 063 066 069 073

More information

Vol. 48 No. 3 Mar PM PM PMBOK PM PM PM PM PM A Proposal and Its Demonstration of Developing System for Project Managers through University-Indus

Vol. 48 No. 3 Mar PM PM PMBOK PM PM PM PM PM A Proposal and Its Demonstration of Developing System for Project Managers through University-Indus Vol. 48 No. 3 Mar. 2007 PM PM PMBOK PM PM PM PM PM A Proposal and Its Demonstration of Developing System for Project Managers through University-Industry Collaboration Yoshiaki Matsuzawa and Hajime Ohiwa

More information

IFAC International Auditing Practice Committee Issued by the International Federation of Accountants

IFAC International Auditing Practice Committee Issued by the International Federation of Accountants IFAC International Auditing Practice Committee Issued by the International Federation of Accountants Accounting estimate Accounting system Adverse opinion Agreed-upon procedures engagement Analytical

More information

Safe harbor statement under the Private Securities Litigation Reform Act of 1995: This presentation may contain forward-looking statements that involv

Safe harbor statement under the Private Securities Litigation Reform Act of 1995: This presentation may contain forward-looking statements that involv /mokamoto @mitsuhiro in/mitsuhiro Safe harbor statement under the Private Securities Litigation Reform Act of 1995: This presentation may contain forward-looking statements that involve risks, uncertainties,

More information

untitled

untitled BCP 1 23 4 1 p.1 1.1 p.1 1.2 p.1 1.3 p.2 1.4 p.3 1.5 p.5 1.6 p.5 1.6.1 1.6.2 1.6.3 2 p.8 2.1 p.8 2.2 p.9 2.3 p.9 2.4 p.9 2.4.1 2.4.2 2.4.3 2.5 p.11 2.5.1 2.5.2 2.6 p.12 2.6.1 2.6.2 3 p.15 3.1 p.15 3.2

More information

000-015-v6.ai

000-015-v6.ai Annual Report 2010 http://www.tokyo-jc.or.jp Tokyo JC President AREA Design JAPAN Design TOKYO Design 2010 Year Schedule 2010 Year Schedule 2010 Year Schedule January January February February March March

More information

JAB NF01 REV JIS Q 17025: /

JAB NF01 REV JIS Q 17025: / 120070501 2004420 2004-04-20 1/27 1 2007-05-01 JAB NF01 REV.1 0 2004-04-20 26 1 JIS Q 17025:2005 2007-05-01 34 2004-04-20 2/27 1 2007-05-01 5 5... 6 2.1...6 2.2...6 2.3...7... 7... 8 4.1...8 4.2...8 4.3...8

More information

建設業界におけるICT施工の進展とバリューチェーン展開への取組み

建設業界におけるICT施工の進展とバリューチェーン展開への取組み ICT Approach to Value Chain Expansion and Information & Communication Technology (ICT) Development in A/E/C Industry 齋藤昌司 中山健 あらまし FsolICTQCDSE ICT Fsol ICT FsolICT Abstract Fsol has been engaged in system

More information

JP1/Integrated Management - Service Support 操作ガイド

JP1/Integrated Management - Service Support 操作ガイド JP1 Version 9 JP1/Integrated Management - Service Support 3020-3-R92-10 P-242C-8F94 JP1/Integrated Management - Service Support 09-50 OS Windows Server 2008 Windows Server 2003 OS JP1/Integrated Management

More information

社会学部紀要 117号☆/1.野瀬

社会学部紀要 117号☆/1.野瀬 October 2013 A 13 2 c 1 1979 A 13 2 b c 1 2012 9 160 2 33 2 OECD 1 2 35.3 OECD 34 29 70.0 50.426 64.7 OECD 30.0 2.2 OECD GDP 2 0.5 31 31 OECD 1.1 45 3 3 1 1 2 200 400 2 1 2 400 600 600 800 13 2 c 2013

More information

スライド 1

スライド 1 WEEE RoHS Supply Chain Management 10.29 1 2 3 4 WEEE WEEE RoHS RoHS TAC TAC Official Journal ( Official Journal ( 2003 2003 2 13 13 WEEE WEEE 9 2003 2003 12 12 31 31 RoHS RoHS 2004 2004 7 5 TAC TAC Work

More information

Vol. 45 No Web ) 3) ),5) 1 Fig. 1 The Official Gazette. WTO A

Vol. 45 No Web ) 3) ),5) 1 Fig. 1 The Official Gazette. WTO A Vol. 45 No. 8 Aug. 2004, 1999 11 (1) (2) (3) 2003 7 Digital Evidence Enhancement for the Japanese Official Gazette Data Providing Services Atsuko Umezawa,, Hiroyuki Ueno, Yukio Miyata, Yasuharu Saikawa,

More information

A5 PDF.pwd

A5 PDF.pwd Global Reporting Initiative GRI 2013 International Integrated Reporting Council: IIRC IIRC 2013 European Union: EU European Parliament and the Council of the European Union 2014 Public Interest EntitiesPIE

More information

untitled

untitled ISO SC4 21 9 2829 ISOInternational Organization for Standardization SC4269 28292SWIFT PParticipating Member O 1. ISO ISO SC4 SC4SC4 SC4 SC4 ISOSC4 TC68ISO ISOISO SC4 ISO ISO15022 1 XML 2 ISO20022 3 2013

More information

JR東日本会社要覧2012-2013

JR東日本会社要覧2012-2013 Technology Planning Department Frontier Service Development Laboratory Advanced Railway System Development Center Safety Research Laboratory Disaster Prevention Research Laboratory Technical Center Environmental

More information

1. (1) 1/

1. (1) 1/ 2005 11 30 2006 03 31 1-1-2 [ ] 7-12 SMBC 4 1 27 1 18 1. (1) 1/5 1 2 32 1/5 1 2006 3 11 200 2006 1 1/5 20 20 30 CM 10 TVCM15 BB 2006 3 31 26 3 5 2 1 4 3 2 3 (2) (1) 2. (1) 1 2006/03/31 1,680,877,606 1

More information

スライド 1

スライド 1 VMware CIT Japan 006 6 CIT Agenda VMWARE Pfizer Japan Inc. 953 648 6 09 -5-00 Discovery Approaches 7,000,000 Compounds Screened,000 Screening Hits Candidates 6 Candidates Product 700 MR* MR Medical Representative

More information

untitled

untitled CONTENTS 002 004 006 27 008 27 011 PART 1 012 27 013 015 017 019 020 MCEV 023 027 PART 2 028 030 034 036 LiPSS 038 040 042 043 046 049 052 057 PART 3 058 ERM Enterprise Risk Management 060 061 064 067

More information

内閣官房情報セキュリティセンター(NISC)

内閣官房情報セキュリティセンター(NISC) ( ) ...1 1.1.1...1 (1)..1 (2)...1 (3)...1 1.1.2...2 (1)...2 (2)...2 (3)...2 (4)...3 (5)...3 (6)...3 1.1.3...4...10 2.1...10 2.1.1...10...10...10 (1)...10 (2)... 11 (3)... 11 (4)...12 (5)...13 (6)...13

More information

Webサービス本格活用のための設計ポイント

Webサービス本格活用のための設計ポイント The Web Services are a system which links up the scattered systems on the Internet, leveraging standardized technology such as SOAP, WSDL and UDDI. It is a general thought that in the future business enterprises

More information

new_logo.eps

new_logo.eps Oracle Enterprise Manager 2.0.4 :A62835-1 Oracle Enterprise Manager 2.0.4 :A62835-1 1 :1999 4 1 :Oracle Enterprise Manager Installation, Release 2.0.4 :A67818-01 Copyright 1999, Oracle Corporation. All

More information

Microsoft Word - PCM TL-Ed.4.4(特定電気用品適合性検査申込のご案内)

Microsoft Word - PCM TL-Ed.4.4(特定電気用品適合性検査申込のご案内) (2017.04 29 36 234 9 1 1. (1) 3 (2) 9 1 2 2. (1) 9 1 1 2 1 2 (2) 1 2 ( PSE-RE-101/205/306/405 2 PSE-RE-201 PSE-RE-301 PSE-RE-401 PSE-RE-302 PSE-RE-202 PSE-RE-303 PSE-RE-402 PSE-RE-203 PSE-RE-304 PSE-RE-403

More information

Zurich, CH Brussels, BE Wrocław, PO Toronto, CA Ottawa, CA Herzliya, IL Almaden, US Detroit, US Tokyo, JP Boulder, US TJ Watson, US Tokyo, JP Atlanta,

Zurich, CH Brussels, BE Wrocław, PO Toronto, CA Ottawa, CA Herzliya, IL Almaden, US Detroit, US Tokyo, JP Boulder, US TJ Watson, US Tokyo, JP Atlanta, IBM IBM Zurich, CH Brussels, BE Wrocław, PO Toronto, CA Ottawa, CA Herzliya, IL Almaden, US Detroit, US Tokyo, JP Boulder, US TJ Watson, US Tokyo, JP Atlanta, US Atlanta, US Heredia, CO Haifa, IL New Delhi,

More information

サービスマネジメントのメソドロジ

サービスマネジメントのメソドロジ Outsourcing Service Management Methodologies IT IT IT Abstract In today s complicated outsourcing business environment, with its diverse service scope, the quality of service provided by outsourcers may

More information

untitled

untitled 22 2 ii 20 10 iii iv 1...1 1.1....1 1.2....2 1.3....3 2...10 2.1....10 2.1.1....10 2.1.1.1.... 11 2.1.1.2....13 2.1.2....16 2.1.3....18 2.1.3.1....18 2.1.3.2....21 2.1.3.3....22 2.2....25 3...29 3.1....29

More information

ERM 2007/12/26 1

ERM 2007/12/26 1 ERM 2007/12/26 1 1. ERM 2. ERM 3. 4. 5. 6. 7. 2007/12/26 2 ERM COSO ERM 2007/12/26 3 ERM 2007/12/26 4 COSO 1985 1980 1985 1987 1992 2004 2007/12/26 5 COSO 2007/12/26 6 ERM CEO CRO) ERM CRO A B C D 2007/12/26

More information

初等教育普及の観点から見たパラフォーマル教育システムの考察

初等教育普及の観点から見たパラフォーマル教育システムの考察 Batley, R.A., Hussain, M., Khan, A. R., Mumtaz, Z., Palmer, N., & Sansom, K. R. (2004). Pakistan: Nonstate Providers of Basic Services. IDD. University of Birmingham. http://www.idd.bham.ac.uk/service-providers/

More information

橡最終原稿.PDF

橡最終原稿.PDF GIS Simulation analysis of disseminate of disaster information using GIS * ** *** Toshitaka KATADAJunsaku ASADA and Noriyuki KUWASAWA GIS GIS AbstractWe have developed the simulation model expressing the

More information