ISO/IEC 27034
E516510
ISO/IEC 27034 is an international standard that provides guidelines for integrating security into application development and management as part of an organization’s overall information security framework.
All labels observed (1)
| Label | Occurrences |
|---|---|
| ISO/IEC 27034 canonical | 1 |
Statements (41)
| Predicate | Object |
|---|---|
| instanceOf |
information security standard
ⓘ
international standard ⓘ |
| addresses |
risk management for application security
ⓘ
security requirements for applications ⓘ |
| alignsWith |
ISO/IEC 27001
NERFINISHED
ⓘ
ISO/IEC 27002 NERFINISHED ⓘ |
| appliesTo |
organizations developing applications
ⓘ
organizations operating applications ⓘ |
| defines |
Application Security Control
ⓘ
Application Security Control Library NERFINISHED ⓘ Application Security Life Cycle ⓘ Application Security Management Process ⓘ Application Security Verification NERFINISHED ⓘ |
| domain |
information security management
ⓘ
information technology ⓘ |
| focusesOn |
application security
ⓘ
application security management ⓘ secure application development ⓘ |
| hasPart | ISO/IEC 27034-1 NERFINISHED ⓘ |
| intendedFor |
IT managers
ⓘ
application owners ⓘ security professionals ⓘ software developers ⓘ |
| language | English ⓘ |
| objective |
to integrate security throughout the application life cycle
ⓘ
to support consistent and repeatable application security practices ⓘ |
| partOf | ISO/IEC 27034 NERFINISHED ⓘ |
| partOfSeries | ISO/IEC 27000 family NERFINISHED ⓘ |
| provides |
concepts and principles for application security
ⓘ
framework for application security ⓘ guidelines for integrating security into application development ⓘ guidelines for integrating security into application management ⓘ |
| publishedBy |
International Electrotechnical Commission
NERFINISHED
ⓘ
International Organization for Standardization ⓘ |
| status | active standard ⓘ |
| supports |
compliance with organizational security policies
ⓘ
governance of application security ⓘ implementation of information security controls at application level ⓘ integration of application security into corporate risk management ⓘ |
| title | Application security – Part 1: Overview and concepts NERFINISHED ⓘ |
| typeOfStandard | guidance standard ⓘ |
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.