Microsoft PowerPoint - SeminarNaft-I-Re.IntISMS&Standards-V

Similar documents
EPSON Safety Instructions Manual


ares_018

6.indd


15690B_表紙1-4.pdf

untitled

ParkOptions&ACC_2001_Jap.ai

Microsoft Word - AY2017F MFR Application Guideline J

Jp_080_113_09

NX10_150223J16AB_0116.ai

2: VPN Australia, Austria, Canada, China, Denmark, Finland, Germany, Hong Kong, India, Indonesia, Italy, Kenya, Korea, Republic of, Malaysia, N

スライド 1

食品、飲料、製薬、医療用途向けシーリングソリューション

JA

GDP TFP CRD

<4D F736F F D C837C815B83678E C982C282A282C4816A2E646F63>

F4_LIFULL_A4_16P_pantone2018c

II a b b c d m a. 2 1

untitled

Descartes Systems Group

Dynamics-NAV

GDP 10 GDP Bureau of Economic Analysis 2

VAS xlsx

main.dvi

資料7(予測結果の評価方法)

001

M-JUSD2471b

ドメイン名に関する各種統計資料

工業意匠の国際登録制度:ハーグ条約

Microsoft Word - 10 統計 参考.doc

(0222修正)1025_international_students_degrees-data_2018.xlsx

-February GDP GDP

PowerPoint プレゼンテーション

untitled

PowerPoint プレゼンテーション

Digestive Endoscopy (DEN) の 国際化と発展 岩手医科大学内科学講座消化器内科消化管分野 松本主之 Digestive Endoscopy (EIC)

Company_2801.ai

IP Triple Play Copyright 2006, Allied Telesis Holdings, A rights reserved.

スライド 1

ITI

untitled

00 [更新済み]

Microsoft PowerPoint - DynamicsNAV_業務に合わせたシステムの構築 ppt

Microsoft PowerPoint Y社説明資料_0924.pptx

ー ス 西濃シェンカー 西濃シェンカー う り う り 業 国 ロジスティクス市 業 業 大 成 り 業 う ー り く ー ス り 道 シェンカー ロジスティクス ーク カ国 所 西濃 国 カ ー 所 ク 市 業 成 り 海 ー ス 中 市 り 西濃シェンカー ェーン ー ス ロジスティクスセンタ

<836D815B B E95E292D48AD BB A835E838D834F5F4D4B D8CB32E706466>

1

2 24

調査資料 -253 国際 国内会議録の簡易分析に基づく 我が国の人工知能研究動向把握の試み 2016 年 8 月 文部科学省科学技術 学術政策研究所 科学技術予測センター 小柴等

国際比較からみた介護システムの役割分担

PowerPoint Presentation

# _ qxd

外国人旅行者の受入環境の整備に関する行政評価・監視_参考資料

# _15683.qxd

& Groovy TM Shorty TM


国際知的財産活用フォーラム 2013 シスメックス株式会社のご紹介 ~ 事業のグローバル展開とそれを支える知財活動 ~ 2013 年 1 月 28 日シスメックス株式会社知的財産部長井上二三夫 1

ITI

環境報告書

RISO P ‘C’³

(bitcoin) 2013 (1) (2) ( M ) (3) (Satoshi Nakamoto) (4) 20

MDGs Millennium Development Goals MDGsMDGs C

訪日外国人旅行者数の推移 2015 年 9 月の訪日外国人旅行者数は 9 月として過去最高となる 万人 ( 前年比 46.7% 増 ) 1~9 月の合計では 1,448.8 万人 ( 前年比 48.8% 増 ) となった 10 月 9 日時点で 1500 万人を超えたことを確認しており

サステナビリティ報告書

Dynamics-NAV

untitled

IFIPおよび海外の情報関連学会の動向

スライド 1

世界経済モデルにおける貿易連関モデルおよび地域モデルについて

平成 30 年 1 月中対外 対内証券投資 ( 速報 ) Portfolio Investment Assets/Liabilities, January 2018 (Preliminary) ( 付表 3 / Appendix table 3) 対外 対内証券投資 Portfolio Invest

平成 29 年 7 月中対外 対内証券投資 ( 速報 ) Portfolio Investment Assets/Liabilities, July 2017 (Preliminary) ( 付表 3 / Appendix table 3) 対外 対内証券投資 Portfolio Investmen


[ OASIS SAMPLE-EXTRACTION PRODUCTS ] LC-MS HPLC UPLC 1

Yubidenwa Apple Apple iphone ipod touch ipad itunes Apple Inc. 1

平成 30 年 9 月中対外 対内証券投資 ( 速報 ) Portfolio Investment Assets/Liabilities, September 2018 (Preliminary) ( 付表 3 / Appendix table 3) 対外 対内証券投資 Portfolio Inve

BDP-SX1

GNH Gross National Happiness Criteria living standard cultural diversity emotional well being health education time use eco-system community vitality

本日の議題 1.JICA と人身取引対策 2. 人身取引とは 3. タイの人身取引の現状 4.JICA の タイ国人身取引被害者保護 自立支援促進プロジェクト 紹介 5. プロジェクト実施において直面した課題及び対応策 2011 年 11 月 24 日 ジェンダー平等 貧困削減推進室古川緑 1

スライド 1

世界の食料生産とバイオマスエネルギー

<4D F736F F F696E74202D20835C A B A E82CC8C7691AA82C C D838A815B94C5205B8CDD8AB B83685D>

The Value Of Interships - Adecco Asia White Paper 2015_no1

花井清人 25‐58/25‐58

Slide 1

グローバル教育へ iEARN & JEARN

スライド 1

C79EWMST


野村証券グループレポート2001 (PDF)

JP_00-1 Front cover


地域別国際収支状況 Regional Balance of Payments 経常収支 Current account 貿易 サービス収支 Goods & services 貿易収支 Goods 輸出 Exports 輸入 Imports 2016C.Y. 2017C.Y. 2016C.Y. 201

地域別国際収支状況 Regional Balance of Payments 経常収支 Current account 貿易 サービス収支 Goods & services 貿易収支 Goods 輸出 Exports 輸入 Imports 2017C.Y. 2018C.Y. 2017C.Y. 201

[ GLYCAN ANALYSIS SLUTINS ] [ GLYCAN ANALYSIS SLUTINS ] N N 3 2

課題別セッションA 明治大学

2 Newly- traded products, Trade Structure, and Central European Countries 1. はじめに EU Baldone, Sdogati & Tajoli EU EU Baldon

6 Foreign Trade, Balance of Payments and International Cooperation

TOEICテスト Worldwide Report

NO2

Transcription:

1 71 71 71 7 1 71 7 1 71 7 1 71 7 1 7 1 7 ISO/IEC 27001:2005 2005 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 7 1 7 : 1 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 2 1

1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 3 1 7 1 71 7 1 71 71 7 1 7 1 71 7 1 71 7 1 71 7 1 71 71 71 7 1 7 1 7 1 71 71 7 1 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 7 1 71 7 1 71 71 71 7 : 1 71 71 71 7-1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7-4 2

1 7 1 71 7 1 7 : 1 71 7 1 7 1 7-1 71 7-1 7 1 71 71 71 7-5 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 6 3

ISMS :1 71 71 71 7 1 71 7 1 71 71 7 1 71 71 71 7 ISMS 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 7 1 71 7 1 7 1 71 7 1 7 1 71 7 1 7 1 7. 1 71 7 1 71 7 1 71 7 1 71 71 7 1 7 7 1 7 1 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 7.1 71 71 7 1 7 1 71 71 7.2 1 71 71 7.1 1 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 7 1 7 1 7 1 7 1 71 71 71 7.1 7 1 71 71 7 1 71 71 7 1 7 1 7.3 1 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 7. 8 4

1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 7 1 7 1 71 71 7 1 71 71 71 7. 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 7 1 7 1 7 1 71 7 1 71 71 7 1 71 71 71 77ス8 1 71 7 1 71 7 1 71 71 71 7 1 71 7 1 7 1 71 7 1 71 71 7 1 71 71 7 1 71 71 7 :1 71 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 7ス8 1 7 1 7 1 7 1 7 1 71 71 7 1 7 1 7 1 71 7 1 71 71 7 7ス8 9 ISMS 1 71 71 71 7 1 71 71 71 7ィC 1 71 7 1 71 71 7 1 71 7 1 7 1 71 7 1 7ィC 1 7 1 71 71 7 1 71 7 1 7 1 7 1 7ィC 1 71 7 1 71 71 7 1 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7ィC1 71 71 71 7 1 71 71 7 1 71 7 1 7 1 7 ィC 1 7 1 71 71 7 1 71 7 1 7 10 5

... 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 7 1 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 71 7...1 71 71 71 7 1 7 1 7 11 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 12 6

ISMS 1 7 1 71 7 2005-2007 International Standard 7ス8 June 2005: ISO/IEC 17799:2005 (BS 7799, Parf 1, unchanged) 7ス8 October 2005: ISO/IEC 27001:2005 (BS 7799, Part 2, unchanged) 7ス8 July 2007: ISO/IEC 27002:2005 (ISO 17799, unchanged) 2000-2002 International Standard & BS 7799 7ス8 November 2000: ISO/IEC 17799:2000 (BS 7799, Parf 1, unchanged) 7ス8 Sept. 2002: BS 7799-2: 2002 1995-98-99 BSI Standard BS 7799 7ス8February 1995: BS 7799 Part 1 7ス8February 1998: BS 7799 Part 2 7ス8April 1999: BS 7799-1/-2:1999 13 1 71 7 ISMS 1 71 71 71 7 1 71 7 1 7 1 7 1 71383 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 71 7.1 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 7 1 7 1 71 71 71 7 =1 71 71 71 7 1 71 71 7 1 71 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 71 71 7.1 71 71 7 1 71 71 71 7 14 7

1383 1 71 71 7 1 71 7 15 1386 1 71 71 7 1 71 7 1386/08/10 1 71 71 71 7 38505/1 7/86-13711 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 7 1 7 1 71 71 71 7 (ISMS)1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 7 1 71 71 7 1 7 1 71 71 71 7 1 7 1 71 71 71 7.1 71 71 71 7 ISMS 1 7 1 7 1 7 1 71 71 71 7 1 71 7 :1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1386/08/10 1 71 71 71 7 38505/1 7/86-13711 1 71 7 1 71 7 1 71 71 7 1 71 71 7" 1 71 7 1 7 1 71 7 1 71 7 1 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 7 1 7 1386 1 71 71 7 1 71 7 (ISMS) 1 7 1 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 7 1 7 1 7 1 71 71 71 7 1 7 1 71 7 1 7 1 71 7 1 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 7 "1 7 1 71 71 7 1 7 1 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 16 8

1 7 1 7 1 7 1 71 7 1 71 71 71 71388/12/24 1 71 71 71 7 1 7 1 71 7 1 71 7 1 7 1 7 1 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 "1 7 1 7 1 71 71 7 1 71 71 71 7 " 1 71 71 7 1 71 71 71 7 1 7 1 7 1 71 7 1 71 71 71 7 " 1 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 7 1 71 71 7 1 7 ー (1 71 71 7)1 7 1 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 7 1 71 71 71 7 1 7 1 7 1 71 7 1 71 71 7 1 71 71 71 7 :1 71 71 71 7.1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 17 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 18 9

1 7 : 1 71 71 71 7 1 71 7 1 71 7 1 7 ISO 27001 1 71 71 71 7 1 71 77ス8 1 71 71 7 1 71 71 77ス8 1 71 71 7 1 71 71 71 7 1 71 71 71 77ス8 1 7 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 7 1 71 71 7 1 71 7. 1 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 7 1 7 19 1 7 1 71 71 71 7 1 71 7 1 71 7 :1 71 71 71 7 1 71 7 1 71 7 ISO 27001 1 71 71 71 7 7ス8 ISO9001:2000 7ス8ISO 14001: 2004.1 71 71 71 7 1 71 7 20 10

1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 7 1 77ス8 ( 1 71 71 7 1 7 ) 1 7 1 71 71 71 7 7ス8 1 7 7ス8 1 7 1 71 7 1 71 7 7ス8 21 21 1 71 71 7 1 71 71 7 PDCA 1 71 71 71 7 Plan ィC Do ィC Check ィC Act 1 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 7 ISMS ISMS 1 7 1 71 71 7 ISMS 1 71 7 1 7 1 71 7 1 71 71 7 1 7 1 7 1 71 71 71 7 1 71 7 ISMS 1 7 1 71 71 7 1 7 22 11

1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 71 7 ISMS CB 1 7 1 71 71 7 1 7 1 71 71 71 7 1 71 71 7 23 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 24 12

Number of Certificates (August.2012) Japan 4152 Netherlands 24 Belgium 3 UK 573 Saudi Arabia 24 Gibraltar 3 India 546 UAE 19 Lithuania 3 Taiwan 461 Bulgaria 18 Macau 3 China 393 Iran 18 Albania 3 Germany 228 Portugal 18 Bosnia Herzegovina 2 Czech Republic 112 Argentina 17 Cyprus 2 Korea 107 Philippines 16 Ecuador 2 USA 105 Indonesia 15 Jersey 2 Italy 82 Pakistan 15 Kazakhstan 2 Spain 72 Colombia 14 Luxembourg 2 Hungary 71 Russian Federation 14 Macedonia 2 Malaysia 66 Vietnam 14 Malta 2 Poland 61 Iceland 13 Mauritius 2 Thailand 59 Kuwait 11 Ukraine 2 Greece 50 Canada 10 Armenia 1 Ireland 48 Norway 10 Bangladesh 1 Austria 42 Sweden 10 Belarus 1 Turkey 35 Switzerland 9 Bolivia 1 Turkey 35 Bahrain 8 Denmark 1 France 34 Peru 7 Estonia 1 Hong Kong 32 Chile 5 Kyrgyzstan 1 Australia 30 Egypt 5 Lebanon 1 Singapore 29 Oman 5 Moldova 1 Croatia 27 Qatar 5 New Zealand 1 Slovenia 26 Sri Lanka 5 Sudan 1 Mexico 25 South Africa 5 Uruguay 1 Slovakia 25 Dominican Republic 4 Yemen 1 Brazil 24 Morocco 4 Total 7940 25 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 26 13

ISO/IEC 27001 (2005) ISMS 1 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 133 1 71 71 71 7 ISO 1/2 ISO NIST COBIT SoGP Others 27 : ISO 270011 71 7 1 71 7 1 71 71 7 1 71 71 71 7 ィC Advanced Persistent Threats ィC Virtualization and Cloud Computing ィC Critical Infrastructure ィC Browser Based Application Protection ィC Databases and Network Storage ィC Tokens and Biometric Access Control ィC VoIP, Wireless, Telephony and Conferencing ISO 2/2 ISO NIST COBIT SoGP Others 28 14

: (National Institute of Standards & Technology) NIST1 71 7 FISMA ィC Risk Management Framework FIPS 199 ィC Information System Categorization FIPS 200 ィCMinimum Controls SP 800-53 ィCRMF Steps and Recommended Controls SP 800-53A ィC Security Control Assessment NIST 1/3 ISO NIST COBIT SoGP Others 29 NIST SP 800-53 1 71 71 71 7 1 7 1 71 7 6 1 7 1 7 1 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 7 1 7 1 71 71 7 1 71 71 7 1 7 FIPS 199 1 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 7 1 7 1 7 1 71 71 7 1 71 7 1 71 7 1 71 71 71 7 18 1 71 7 255 (Appendix F) NIST 2/3 ISO NIST COBIT SoGP Others 30 15

Insider Threats Application Security Social Networking Mobile Devices Cloud Computing Advanced Persistent Threats Industrial Control Systems :1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 7 NIST 3/3 ISO NIST COBIT SoGP Others 31 COBIT1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 1 7 1 71 71 7 1 7 1 7 1 71 7 ITGI 1 7ISACA 1 71 71 7 1 7 210 1 71 7 34 1 71 71 71 7 1 71 71 71 7 1 7 1 7 1 71 71 7 1 7 1 7 1 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 71 7 1 7 1 71 71 7 1 71 71 7 COBIT 1/2 ISO NIST COBIT SoGP Others 32 16

SoGP Information Security Forum(ISF) 1 71 71 71 7 1 7 ィC Cybercrime attacks ィC Cloud computing ィC Critical infrastructure ィC Consumer devices : 1 71 71 71 7 1 7 1 71 71 71 7 1 71 7 2011 1 71 71 7 1 71 7 1 7 ISO 27001, COBIT v4, PCI DSS, SOX 1 71 7 1 71 7 1 71 71 71 7 1 71 7 SoGP 1/1 ISO NIST COBIT SoGP Others 33 1 71 7 1 71 71 71 7 PCI DSS ィC Standard for organizations handling cardholder information for: debit, credit, e-purse, ATM and POS cards (12 Control Objectives) ITIL ィC IT Service Management framework(underpins ISO 20000) including: Service Strategy, Service Design, Service Transition, Service Operation, Continual Improvement NERC, ISA-99, ISO 15408, BS25999-2, HIPAA, GLBA Others 1/1 ISO NIST COBIT SoGP Others 34 17

1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 35 1 71 71 71 7 1 7 1 71 71 71 7 1 7 1 71 7 :1 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 7 1 7 Stuxnet, Duqu, Wiper, Flame, etc : 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 7 1 7 1 7 1 71 7 1 71 7 1 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 7 1 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 71 7 CDC 1/3 36 18

1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 37 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 7 1 7 SOA 19

1 71 7 1 7 1 71 71 71 7 1 71 77ス8 1 7 1 71 71 7 1 71 7 1 77ス8 1 7 7ス8 1 71 71 7 1 71 7 7ス8 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 7 1 7 SOA 1 7 1 71 7 1 7 1 71 71 7 7ス8 1 7 1 71 71 7 1 71 71 7 1 71 7 7ス8 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 7ス8 1 71 7 1 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 71 77ス8 (Gap Analysis Report) 1 71 7 7ス8 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 7 1 7 SOA 20

1 7 1 71 7 1 7 1 71 71 7 1 71 7 1 71 71 71 7 (Scope) 1 7 1 71 71 71 7 7ス8 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 7 1 7 SOA 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 7 1 71 71 7 1 71 71 7 1 71 7 1 71 71 71 77ス8 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 7 1 7 SOA 21

1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 77ス8 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 77ス8 1 71 71 71 7 1 71 71 71 7 1 71 71 77ス8 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 77ス8 1 71 71 7 1 7 1 71 71 7 1 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 77ス8... 1 7 IDS/IDP/IPS 1 7 firewall : 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 77ス8 1 71 7 1 71 71 7 1 7 1 7 1 71 71 71 7 1 71 71 77ス8 DOS 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 77ス8 Password 1 71 71 71 7 1 71 71 77ス8 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 7 1 7 SOA 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 7.1.2 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 77ス8... 1 7 1 71 71 7 1 7 1 71 71 7 1 71 7 1 71 7 1 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 77ス8 1 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 77ス8 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 77ス8 1 71 7 1 7 1 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 7 1 71 7.1 71 71 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 7 SOA 22

1 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 7. 1 7 1 71 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 : 1 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 SOA 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 7 1 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 1 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 7 1 7 23

1 71 7 1 71 7 1 71 71 7 1 71 71 7 1 71 7 7ス8 1 71 71 7 1 71 71 7 1 71 71 71 7 2 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 7ス8 1 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 71 7 7ス8 2 1 71 71 7 24

1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 7ス8 1 7 1 71 71 71 7 1 71 71 7 1 71 71 7 7ス8 1 71 71 71 7 1 71 71 7 SOC 1 71 71 7 CERT 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 7 1 71 7 1 71 71 7 1 71 7 1 71 7 1 7 49 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 CERT 1 71 71 7 1 71 7 1 71 7 1 71 71 7 Cert 1 71 71 7 1 71 71 71 7 Cert 1 71 71 7 1 71 71 71 7 1 71 71 71 7 Cert 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 7 Cert Cert 1 71 71 7 1 71 71 7 1 71 71 7 SOC 1 71 71 7 1 7 1 7 1 71 71 7 1 71 7 Event generators 1 7 1 71 7 1 71 71 71 7 1 71 7 SOC 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 50 25

1 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 7 1 71 7 ISMS 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 7ス8 1 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 7ス8 1 71 71 71 7 1 71 7) 1 71 7 7ス8 1 7 1 7 1 71 71 71 7 (1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 77ス8 1 71 71 7 RFP 1 7 1 71 71 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 71 7 7ス8 1 71 71 77ス8 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 7ス8 1 71 7 1 71 71 71 7 1 71 7 1 71 71 7) RFP 1 71 71 71 77ス8 1 71 71 77ス8 1 7 1 71 7 1 71 7 1 71 7 1 7 (1 71 7 1 71 71 77ス8 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 7 7ス8 1 71 71 7 1 71 71 71 7 1 7 1 71 7 7ス8 1 71 71 7 1 71 71 7 Business modeling RFP 51 1 71 71 7 1 71 71 7 1 71 7 1 71 71 7 1 71 71 7 2 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 7 26

1 71 71 7 1 71 71 71 7 DRP 1 7 BCP 1 71 71 7 1 71 71 7 1 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 3 1 71 71 7 DRP 1 7 BCP 1 7 1 71 71 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 7ス8 1 71 71 71 7 1 71 7 1 71 7 1 71 71 7 7ス8 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 3 1 71 71 7 27

1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 7 3 1 71 71 7,1 71 7 1 71 71 7 1 71 7,1 71 7 1 71 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 7,1 71 71 71 7 1 71 7 1 7 1 71 7 1 71 71 7 1 71 7 1 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 7, 1 71 71 7 1 71 7 1 71 71 7 1 71 71 71 7.1 7 1 71 71 71 7 1 71 7 1 71 71 7 1 71 71 71 7 DRP 1 7 BCP 1 71 71 7 1 7 3 1 71 71 7 28

1 71 71 7 1 71 71 71 7 DRP 1 7 BCP 1 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 7 1 71 71 7 3 1 71 71 7 1 71 7 1 7 1 7 :1 71 71 7 1 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 7 4 1 71 71 7 29

1 71 7 1 7 1 7 :1 71 71 7 1 71 71 7 1 7 1 71 7 1 71 71 71 7, 1 71 7 1 71 7 1 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 7 1 7 1 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 71 7 1 7 1 7 1 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 71 7 1 71 7 1 7 4 1 71 71 7 1 71 7 1 7 1 7 :1 71 71 7 1 71 71 7 1 71 7 7ス8 1 71 71 71 7 1 71 7 7ス8 1 71 71 7 1 71 7 1 71 71 71 7 7ス8 1 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 7 1 71 71 7 1 71 71 7 4 1 71 71 7 30

1 71 7 1 7 1 7 :1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 7 1 71 7 1 7 1 71 7 1 7 1 71 7 1 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 7.1 71 71 7 1 71 7 1 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 7 4 1 71 71 7 1 7 1 71 71 7 : 1 71 71 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 7 1 71 71 7 1 71 7 31

1 7 1 71 71 7 : 1 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 7 1 71 7 1 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 7 1 7 1 71 71 7 : 1 71 71 7 1 71 7 1 71 71 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 7 32

1 7 1 71 71 7 : 1 71 71 7 1 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 7 1 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 7 1 71 71 7 1 71 7 1 71 7 1 71 71 7 1 71 7 1 71 7.1 71 71 7 1 7 1 71 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 7 1 71 71 71 7 1 71 71 71 7 1 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 7 1 7 1 7 1 7 1 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 ISO NIST COBIT SoGP 1 71 71 7 1 71 7 1 71 71 71 7 1 7 1 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 33

: 1 71 71 71 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 71 71 71 7.1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 1 7 1 7 1 71 7 1 71 7 1 7 1 71 7 1 71 7 1 71 71 7 1 71 71 7 1 71 71 71 7 1 71 71 7 1 71 7.1 71 71 71 7 1 71 71 71 7 1 71 71 7 1 71 71 71 7 1 71 7 1 7 1 7 1 7 1 7 1 71 71 71 7 1 71 71 71 7 1 71 71 71 7 NIST 1 71 71 71 7 1 7 1 71 71 71 7 1 71 7 1 7 1 71 71 7.1 71 71 71 7 1 71 71 71 7 1 71 7 1 71 7 1 71 71 7 1 71 71 71 7 1 7 1 71 71 7 1 7 1 7 1 71 71 71 7 1 71 7 1 71 71 71 7.1 71 71 71 7 1 7 7ス8 7ス8 7ス8 7ス8 67 1 71 71 7 1 71 71 71 7 1 71 7 1 71 71 71 7 1 71 7 68 34