4-ื™ืชืจื•ื ื•ืช-ืขื™ืงืจื™ื™ื-ืฉืœ-ISO-27001

4 ื”ื™ืชืจื•ื ื•ืช ืฉืœ ื™ื™ืฉื•ื ISO 27001

ISO 27001:2013 (ื”ื’ืจืกื” ื”ื ื•ื›ื—ื™ืช ืฉืœ ISO 27001) ื”ื•ื ืื—ื“ ืžืชืงื ื™ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข ื”ืคื•ืคื•ืœืจื™ื™ื ื‘ืขื•ืœื. ื™ื•ืชืจ ื•ื™ื•ืชืจ ื—ื‘ืจื•ืช ืžืฉื™ื’ื•ืช ืื™ืฉื•ืจ ISO 27001 ื›ื“ื™ ืœื”ื“ื’ื™ืฉ ืืช ื”ื—ื•ืกืŸ ืฉืœ ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข ืฉืœื”ืŸ.

ืขืžื™ื“ื” ื‘-ISO 27001 ื”ื™ื™ืชื” ื‘ืขื‘ืจ ืขื ื™ื™ืŸ ืฉืœ ื™ืชืจื•ืŸ ืชื—ืจื•ืชื™, ืืš ื›ื›ืœ ืฉื”ืกืžื›ืช ISO 27001 ื”ื•ืคื›ืช ืœื ื•ืจืžื” ืœืื‘ื˜ื—ืช ืžื™ื“ืข ืฉื™ื˜ื•ืช ืขื‘ื•ื“ื” ืžื•ืžืœืฆื•ืช, ื”ื™ื ื™ื•ืชืจ ื•ื™ื•ืชืจ ื›ื ื™ืกื” ืžื™ื ื™ืžืœื™ืช ืœืžื›ืจื– ืื• ืœื—ื™ื“ื•ืฉ ื—ื•ื–ื”. ื”ืชืืžื” ืœืชืงืŸ ื™ื›ื•ืœื” ืœืขืฉื•ืช ืืช ื”ื”ื‘ื“ืœ ื‘ื™ืŸ ื–ื›ื™ื™ื” ืœื”ืคืกื“ ื‘ื›ืœ ื”ืžื›ืจื–ื™ื ื”ื—ืฉื•ื‘ื™ื.

ืžื“ื•ืข ISO 27001 ื›ืœ ื›ืš ื—ืฉื•ื‘ ืœืืจื’ื•ื ื™ื?

ISO 27001 ื”ื•ื ื”ืชืงืŸ ื”ื™ื—ื™ื“ ืฉืžื’ื“ื™ืจ ืืช ื”ืžืคืจื˜ื™ื ืขื‘ื•ืจ ื ืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข (ISMS).

ืืจื’ื•ื ื™ื ืฆืจื™ื›ื™ื ื™ื•ืชืจ ื•ื™ื•ืชืจ ืœื”ืจืื•ืช ืฉื ื™ืชืŸ ืœืกืžื•ืš ืขืœื™ื”ื ืขื‘ื•ืจ ืื‘ื˜ื—ืช ืžื™ื“ืข ื•ื ื™ื”ื•ืœ ืคืจื˜ื™ื•ืช ืชืงืŸ ISO 27001 ืžื•ื›ื™ื— ืฉืืจื’ื•ืŸ ื–ื™ื”ื” ืกื™ื›ื•ื ื™ื ื•ืœื”ืคืขื™ืœ ืืžืฆืขื™ ืžื ื™ืขื” ืœื”ื’ื ื” ืขืœ ื”ืืจื’ื•ืŸ ืžืคื ื™ ืคืจืฆื•ืช ืื‘ื˜ื—ืช ืžื™ื“ืข.

ื’ื•ืคื™ ื”ืกืžื›ื”

ISO ืžืคืชื—ืช ืชืงื ื™ื ื‘ื™ื ืœืื•ืžื™ื™ื, ืืš ืื™ื ื” ืžื ืคื™ืงื” ืชืขื•ื“ื•ืช. ืขื‘ื•ืจ ืืจื’ื•ื ื™ื ื‘ื‘ืจื™ื˜ื ื™ื”, ื”ื›ืจื” ื‘ืชืงืŸ ISO 27001 ื”ื™ื ื‘ืขืœืช ื”ืขืจืš ื”ืจื‘ ื‘ื™ื•ืชืจ ื›ืืฉืจ ื”ื™ื ืžืื•ืฉืจืช ืขืœ ื™ื“ื™ UKAS ื’ื•ืฃ ื”ืกืžื›ื” ืžื•ืกืžืš ืฉื™ื‘ืงืจ ื‘ืื•ืคืŸ ืขืฆืžืื™ ืืช ื”ืืจื’ื•ืŸ ืฉืœืš ื•ื™ืกืคืง ืœืš ืื™ืฉื•ืจ ISO 27001.

ื‘ืฆืคื•ืŸ ืืžืจื™ืงื”, ANSI National Accreditation Board (ANAB) ื”ื•ื ื’ื•ืฃ ื”ื”ืกืžื›ื” ื”ื’ื“ื•ืœ ื‘ื™ื•ืชืจ. ื›ื“ื™ ืœืจืื•ืช ืจืฉื™ืžื” ืฉืœ ื”ื’ื•ืคื™ื ื”ืžื•ืกืžื›ื™ื ืฉืœื”ื, ื‘ืงืจ ืืฆืœื ื‘ืกืคืจื™ื™ื”. CDG ืžื•ื›ืจื™ื ื›ื’ื•ืฃ ื”ืกืžื›ื” ืคื•ืคื•ืœืจื™ ื‘ื”ื•ื“ื•.

"ืคื•ืจื•ื ื”ื”ืกืžื›ื” ื”ื‘ื™ื ืœืื•ืžื™" (IAF) ืžื ื”ืœ ืจืฉื™ืžื” ืฉืœ ื›ืœ ื’ื•ืคื™ ื”ื”ืกืžื›ื” ื”ื‘ื™ื ืœืื•ืžื™ื™ื ื”ื—ื‘ืจื™ื ื‘ื—ื™ืœ ื”ืื•ื•ื™ืจ. ืจืฉื™ืžื” ื–ื• ื ื™ืชืŸ ืœืžืฆื•ื ื›ืืŸ: ืจืฉื™ืžืช ื—ื‘ืจื™ ื—ื™ืœ ื”ืื•ื•ื™ืจ.

ืžื”ื ืืจื‘ืขืช ื”ื™ืชืจื•ื ื•ืช ื”ืžื•ื‘ื™ืœื™ื ื‘ื”ืฉื’ืช ISO 4?

ื™ืชืจื•ืŸ 1: ืฉื™ืžื•ืจ ืœืงื•ื—ื•ืช ื•ื–ื›ื™ื™ื” ื‘ืขืกืงื™ื ื—ื“ืฉื™ื

ื‘ืขื•ื“ ื”ื”ื—ื–ืจ ืขืœ ื”ื”ืฉืงืขื” ืžื ืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข ื™ื›ื•ืœ ืœื”ื™ื•ืช ื’ื‘ื•ื”, ื˜ืจื™ื’ืจื™ื ืœื”ืฉืงืขื” ื”ืจืืฉื•ื ื™ืช ืžื’ื™ืขื™ื ื‘ื“ืจืš ื›ืœืœ ืžื›ื•ื—ื•ืช ื—ื™ืฆื•ื ื™ื™ื ื›ืžื• ืœืงื•ื—ื•ืช ืจื‘ื™ ืขื•ืฆืžื”.

ื™ืฉ ืžืกืคืจื™ื ื”ื•ืœื›ื™ื ื•ื’ื“ืœื™ื ืฉืœ ื‘ืขืœื™ ืขื ื™ื™ืŸ ื”ืจื‘ื” ื™ื•ืชืจ ืžืชืขื ื™ื™ื ื™ื ื‘ืื•ืคืŸ ืฉื‘ื• ื”ืžื™ื“ืข ื”ื™ืงืจ ืฉืœื”ื ืžื˜ื•ืคืœ ื•ืžื•ื’ืŸ. ื”ืกื™ื›ื•ื ื™ื ื”ื›ืจื•ื›ื™ื ื‘ ืื‘ื˜ื—ืช ืกื™ื™ื‘ืจ ื•ื”ืคืจื•ืช ืžื™ื“ืข ืžื›ืœ ืกื•ื’ ืฉื”ื•ื ื’ื“ื•ืœื•ืช ืžื›ื“ื™ ืคืฉื•ื˜ ืœืœื›ืช ืขืœ ืœื—ื™ืฆืช ื™ื“ ื•ื”ื‘ื˜ื—ื” ืฉืกืคืง ื—ื“ืฉ ืคื•ืขืœ ื‘ืื—ืจื™ื•ืช ืขื ืžื™ื“ืข.

ื”ืืžื•ื ื” ื”ื”ื™ืกื˜ื•ืจื™ืช ืœื’ื‘ื™ ืืจื’ื•ื ื™ื ื”ืžื’ื™ื ื™ื ื‘ืื•ืคืŸ ื˜ื‘ืขื™ ืขืœ ืคืจื˜ื™ื•ืช ื•ืื‘ื˜ื—ืช ื ืชื•ื ื™ื, ื”ื•ื—ืœืคื” ื‘ื—ืฉื“ ืฉื”ื ืชื•ื ื™ื ืžื˜ื•ืคืœื™ื ื‘ืฆื•ืจื” ืœื ื ื›ื•ื ื”. ืืจื’ื•ื ื™ื ืฆืจื™ื›ื™ื ืœื”ื’ืŸ ืขืœ ื”ืขืกืง ืฉืœื”ื, ื•ื–ื” ื›ื•ืœืœ ืืช ื”ืื‘ื˜ื—ื” ืฉืœื”ื ืฉืจืฉืจืช ืืกืคืงื”. ื–ื” ื ื—ืงืจ ื‘ื™ืชืจ ืคื™ืจื•ื˜ ื‘ื ื™ื™ืจ ื”ืœื‘ืŸ ืฉืœื ื• "ืชื›ื ื•ืŸ ืžืงืจื” ืขืกืงื™ ืœืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข".

ื”ืชืืžืช ื”ืืจื’ื•ืŸ ืฉืœืš ืœืกื“ืจ ื”ืขื“ื™ืคื•ื™ื•ืช ื•ื”ื“ืจื™ืฉื•ืช ืฉืœ ื”ืœืงื•ื—ื•ืช ืฉืœืš ื™ื™ืชืŸ ืœืš ื™ืชืจื•ืŸ ืชื—ืจื•ืชื™ ื•ื™ื”ืคื•ืš ืื•ืชืš ืœืœืงื•ื— ืคื•ื˜ื ืฆื™ืืœื™ ื”ืจื‘ื” ื™ื•ืชืจ ืื˜ืจืงื˜ื™ื‘ื™.

ื™ืชืจ ืขืœ ื›ืŸ, ISO 27001 ื”ืกืžื›ื” ืžืคื’ื™ืŸ ื ื•ื”ืœื™ ืื‘ื˜ื—ื” ื—ื–ืงื™ื, ื•ื‘ื›ืš ืžืฉืคืจ ืืช ืงืฉืจื™ ื”ืœืงื•ื—ื•ืช ื•ืฉื™ืžื•ืจ ื”ืœืงื•ื—ื•ืช.

ืขื‘ื•ืจ ืจื‘ื™ื ืžื”ืœืงื•ื—ื•ืช ืฉืœื ื•, ื”ืจืฆื•ืŸ ืฉืœื”ื ืœื”ืฉื™ื’ ืืช ืชืงืŸ ISO 27001 ืžื•ื ืข ืขืœ ื™ื“ื™ ื“ืจื™ืฉื•ืช ื”ืœืงื•ื—ื•ืช ืฉืœื”ื, ื‘ื™ืŸ ืื ืœืงื•ื—ื•ืช ืงื™ื™ืžื™ื ืื• ื‘ืขืช ืžื›ืจื–ื™ื ืœื–ื›ื™ื™ื” ื‘ืขืกืงื™ื ื—ื“ืฉื™ื ืฉืœ ืœืงื•ื—ื•ืช.

ื‘ื›ืœ ืžืฆื‘, ื‘ื™ืŸ ืื ื”ื ื”ื’ ื”ื•ื ืœืกืคืง ืืช ื“ืจื™ืฉื•ืช ื”ืœืงื•ื— ื”ืงื™ื™ื ืื• ื”ืœืงื•ื— ื”ืคื•ื˜ื ืฆื™ืืœื™, ื‘ื“ืจืš ื›ืœืœ ืชืžื™ื“ ื™ืฉ ืžื˜ืจื” ืจื’ื™ืฉื” ืœื–ืžืŸ ืขื ืœื—ืฅ ืœื”ืฉื™ื’ ื”ืกืžื›ื” ื‘ืžื”ื™ืจื•ืช.

ื ื™ืกื™ื•ืŸ ื‘-ISO 27001

ื”ื ื”ื’ ื”ืจืืฉื•ื ื™ ืฉืœื ื• ืœ ืœื”ืฉื™ื’ ISO 27001 ืขื•ื“ ื‘ืฉื ืช 2012 ื”ื™ื” ืฉืื—ื“ ื”ืœืงื•ื—ื•ืช ื”ืงื™ื™ืžื™ื ืฉืœื ื• ื“ืจืฉ ืžืื™ืชื ื• ืœื”ื•ื›ื™ื— ืืช ื”ืืžื™ื ื•ืช ืฉืœ ืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข ืฉืœื ื• ื›ื“ื™ ืœื”ืžืฉื™ืš ืœืขืฉื•ืช ืื™ืชื ื• ืขืกืงื™ื. ืžืื–, ื–ื” ื›ื‘ืจ ืกื™ืคื•ืจ ืฉืื ื• ืฉื•ืžืขื™ื ืฉื•ื‘ ื•ืฉื•ื‘ ืžืœืงื•ื—ื•ืชื™ื ื•. ืงืจื ืขื•ื“ ืขืœ ื”ืกื™ืคื•ืจ ืฉืœื ื•.

ืžืฉืชืžืฉ ISMS.online, Amigo, ื–ื™ื”ื” ืฉื”ืœืงื•ื—ื•ืช ื‘ืจืžืช ื”ืืจื’ื•ืŸ ืฉื”ื ืžื•ืฉื›ื™ื ืžื—ืคืฉื™ื ื™ื•ืชืจ ื•ื™ื•ืชืจ ืื‘ื˜ื—ืช ืื‘ื˜ื—ืช ืžื™ื“ืข. ืขื ืืฃ ืื—ื“ ืื“ื ื”ืžื•ืงื“ืฉ ื‘ืžืฉืจื” ืžืœืื” ืœืžื™ื“ืข ื‘ืชืคืงื™ื“ ื”ืื‘ื˜ื—ื”, ื”ื ื”ื—ืœื™ื˜ื• ืœื”ืคื•ืš ืืช ื”ืชื”ืœื™ืš ืœืื•ื˜ื•ืžื˜ื™ ื•ืœืคืฉื˜ ื›ื›ืœ ื”ืืคืฉืจ. ื”ื ื”ืฉื™ื’ื• ื™ื™ืฉื•ื ืžื•ืฆืœื— ื—ืœืง ื•ื‘ื™ืงื•ืจืช ISO 27001 ืžื•ืฆืœื—ืช - ืขื ืžืืžืฅ ืฉืœ 2-3 ืฉื‘ื•ืขื•ืช ื‘ืœื‘ื“ ืฉื”ื•ืงื“ืฉื• ืœืคืจื•ื™ืงื˜ ื”-ISO 27001 ืฉืœื”ื - ื”ื•ื“ื•ืช ืœืจืืฉื™ืช ื”ืขื ืง ืฉื”ืขื ื™ืงื” ืœื”ื ISMS.online.

ืงืจื ืืช ืกื™ืคื•ืจ ื”ืœืงื•ื—ื•ืช ืฉืœ ืืžื™ื’ื•.

ื™ืชืจื•ืŸ 2: ืžื ื™ืขืช ืงื ืกื•ืช ื•ืื•ื‘ื“ืŸ ืžื•ื ื™ื˜ื™ืŸ

ืชื—ืช ื”ืื™ื—ื•ื“ ื”ืื™ืจื•ืคื™ ื•ืžืจื’ื•ืœืฆื™ืช ื”ื ืชื•ื ื™ื ื”ื›ืœืœื™ืช (GDPR), ื” ืžืฉืจื“ ื ืฆื™ื‘ื•ืช ื”ืžื™ื“ืข (ICO), ื‘ื‘ืจื™ื˜ื ื™ื”, ื™ื›ื•ืœื” ื›ืขืช ืœื”ื ืคื™ืง ืงื ืกื•ืช ืฉืœ ืขื“ 4% ืžื”ืžื—ื–ื•ืจ ื”ืฉื ืชื™ ืฉืœ ื—ื‘ืจื”, ืื• 20 ืžื™ืœื™ื•ืŸ ื™ื•ืจื• (ื”ื’ื“ื•ืœ ืžื‘ื™ื ื™ื”ื) ืขืœ ืขื‘ื™ืจื•ืช ื”ืžื™ื“ืข ื”ืงืฉื•ืช ื‘ื™ื•ืชืจ.

ืืœ ื”ืื ื™ ืžื“ื™ื ื•ืช ICO ื›ื™ "ื›ืœ ืขื•ื ืฉ ืฉืื ื• ืžื•ืฆื™ืื™ื ื ื•ืขื“ ืœื”ื™ื•ืช ื™ืขื™ืœ, ืžื™ื“ืชื™ ื•ืžืจืชื™ืข, ื•ื™ื•ื—ืœื˜ ืขืœ ื›ืœ ืžืงืจื” ืœื’ื•ืคื•".

ืื‘ื˜ื—ืช ืžื™ื“ืข ืžืฉื•ืคืจืช ื• ื”ื’ื ื” ืขืœ ื ืชื•ื ื™ื ื ืžืฆื ื”ืจื‘ื” ื™ื•ืชืจ ื’ื‘ื•ื” ื‘ืกื“ืจ ื”ืขื“ื™ืคื•ื™ื•ืช ืฉืœ ื”ืฆื™ื‘ื•ืจ ื”ืจื—ื‘ ื•ืžื ื”ื™ื’ื™ื ืขืกืงื™ื™ื ื›ืื—ื“.

ื•ื›ื•ืชืจื•ืช ื‘ืขืžื•ื“ ื”ืจืืฉื•ืŸ ืฉืœ ืงื ืกื•ืช ื’ื“ื•ืœื™ื ืฉื ื’ืจืžื• ืขืงื‘ ืคืจืฆื•ืช ืžื™ื“ืข ืžืฉืžืขื•ืชื™ื•ืช ื™ืกืœื™ืžื• ืืช ื”ืฆื•ืจืš ื‘ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข ืืคื™ืœื• ื™ื•ืชืจ, ื›ืืฉืจ ืืจื’ื•ื ื™ื ืœื ืจืง ื™ืกืชื›ืœื• ืขืœ ืื‘ื˜ื—ืช ื”ืกื™ื™ื‘ืจ ืฉืœื”ื, ืืœื ื’ื ืืช ืื™ืฉื•ืจื™ ื”-infosec ืœืื•ืจืš ืฉืจืฉืจืื•ืช ืืกืคืงื”. ื–ื” ืžืฉืคื™ืข ืืคื™ืœื• ืขืœ ื”ืขืกืงื™ื ื”ืงื˜ื ื™ื ื‘ื™ื•ืชืจ ื›ืžื• ื”ื™ื›ืŸ ืฉื™ืฉ ื˜ื™ืคื•ืœ ื•ืขื™ื‘ื•ื“ ื ืชื•ื ื™ื, ื™ืฉ ืกื™ื›ื•ืŸ.

ื‘ื™ื•ืœื™ 2019, ื ื’ื–ืจื• ืขืœ ื‘ืจื™ื˜ื™ืฉ ืื™ื™ืจื•ื•ื™ื™ื– ืงื ืก ืฉืœ 183 ืžื™ืœื™ื•ืŸ ืœื™ืฉ"ื˜ ื‘ื’ื™ืŸ ื”ืคืจื” ืฉืœ GDPR ื‘ืขืงื‘ื•ืช ื ืชื•ื ื™ื ื”ืคืจื” ืฉื”ืฉืคื™ืขื” ืขืœ 500,000 ืœืงื•ื—ื•ืช ื‘ืฉื ื” ืฉืขื‘ืจื”, ืขืœื•ืช ืฉืžืกืชื›ืžืช ื‘-1.5% ืžื”ื”ื›ื ืกื•ืช ื”ืฉื ืชื™ื•ืช ืฉืœ ื—ื‘ืจื•ืช ื”ืชืขื•ืคื”.

ื‘ืขืงื‘ื•ืช ื›ืš, ื ืงื ืก ืฉืœ 100 ืžื™ืœื™ื•ืŸ ืœื™ืฉ"ื˜ ื”ื•ื˜ืœ ืขืœ ืงื‘ื•ืฆืช ื”ืžืœื•ื ื•ืช ื”ื‘ื™ื ืœืื•ืžื™ืช Marriott, ืœืื—ืจ ืฉื”ืืงืจื™ื ื’ื ื‘ื• ืืช ื”ืฉื™ืื™ื ืฉืœ 339 ืžื™ืœื™ื•ืŸ ืื•ืจื—ื™ื.

ืœื ืจืง ื”ื—ื‘ืจื•ืช ื”ื’ื“ื•ืœื•ืช ื™ื•ืชืจ ื ื•ืคืœื•ืช ื‘-ICO. ื’ื ื—ื‘ืจื•ืช ืงื˜ื ื•ืช ื™ื•ืชืจ ื—ื•ื˜ืคื•ืช ืงื ืกื•ืช. ืขื ื™ื™ื ื™ ืคืจื˜ื™ื•ืช ื”ื•ื ืื•ืกืฃ ื ืชื•ื ื™ื ืขืœ ืงื ืกื•ืช ื›ืœืœื™ืช ืฉืœ ืชืงื ื•ืช ื”ื’ื ืช ืžื™ื“ืข ื•ืžืฆื ืฉื”ืงื ืก ื”ืงื˜ืŸ ื‘ื™ื•ืชืจ ื”ื•ื 194 ืื™ืจื•, ืฉื ื’ืจื ืขืœ ื™ื“ื™ ื—ื‘ืจืช ืฉื™ืจื•ืช ื‘ืฆ'ื›ื™ื” ืžื•ืงื“ื ื™ื•ืชืจ ื”ืฉื ื”.

ื’ื ื›ืืฉืจ ืืจื’ื•ืŸ ืกืคื’ื” ืงื ืก ืงื˜ืŸ ื›ืžื• ื–ื”, ืขื“ื™ื™ืŸ ืชื”ื™ื” ืœื• ื”ืฉืคืขื” ืžื–ื™ืงื” ืขืœ ื”ืขืกืง ืฉืœื• ื›ืฉื”ื ื™ื”ื™ื• ืคื—ื•ืช ืื˜ืจืงื˜ื™ื‘ื™ื™ื ืขื‘ื•ืจ ืœืงื•ื—ื•ืช ืคื•ื˜ื ืฆื™ืืœื™ื™ื.

ื–ื” ืœื ืžืคืชื™ืข ืื ื›ืš ืืจื’ื•ื ื™ื ืจื•ืฆื™ื ืœื—ื–ืง ืืช ืื‘ื˜ื—ืช ื”ืžื™ื“ืข ืฉืœื”ื ื™ืฆื™ื‘ื” ื›ื“ื™ ืœืžื ื•ืข ืงื ืก. ื™ืฉ ืœืฉืงื•ืœ ื”ื™ื˜ื‘ ืืช ื”ื”ืฉืคืขื” ืขืœ ื”ืžื•ื ื™ื˜ื™ืŸ ืฉืœ ื—ื‘ืจื•ืช ืฉืงื™ื‘ืœื• ืคืจืกื•ื ืฉืœื™ืœื™ ืžืงื ืกื•ืช, ืื• ืืคื™ืœื• ืจืง ืžื”ื•ื“ืขื•ืช ืื–ื”ืจื”. ื–ื” ืขืฉื•ื™ ืœื”ืฉืคื™ืข ืœืจืขื” ืขืœ ืฉื•ืœื™ ื”ืจื•ื•ื— ืฉืœื”ื ื‘ืฉื ื™ื ื”ื‘ืื•ืช.

ื™ืชืจื•ืŸ 3: ืฉื™ืคื•ืจ ืชื”ืœื™ื›ื™ื ื•ืืกื˜ืจื˜ื’ื™ื•ืช

ื‘ื ื•ืกืฃ ืœืฉื™ืคื•ืจ ื”ืื•ืคืŸ ืฉื‘ื• ื”ืืจื’ื•ืŸ ืฉืœืš ื ืชืคืก ืขืœ ื™ื“ื™ ื”ืœืงื•ื—ื•ืช ืฉืœืš, ื”ืกืคืงื™ื ื•ื‘ืขืœื™ ืขื ื™ื™ืŸ ืื—ืจื™ื, ื™ืชืจื•ื ื•ืช ื”ืกืžื›ืช ISO 27001 ื”ืžืขืจื›ื•ืช ื”ืคื ื™ืžื™ื•ืช, ื”ืžื‘ื ื” ื•ื”ืชื”ืœื™ื›ื™ื ื•ื”ื ื”ืœื™ื ื”ื™ื•ืžื™ื•ืžื™ื™ื ืฉืœ ื”ืืจื’ื•ืŸ ืฉืœืš.

ื–ื” ืื›ืŸ ืื—ื“ ื”ื™ืชืจื•ื ื•ืช ืฉืœ ืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข ืขืฆืžื”.

ื—ืฉื•ื‘ ื”ื™ื‘ื˜ ืฉืœ ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข ื”ื•ื ื ื”ืœื™ื ื•ืื—ืจื™ื•ืช ืชืคืขื•ืœื™ื™ื. ืชื—ืช ื ืกืคื— ื.12 ืžืกื’ืจืช, ืงื™ื™ืžื•ืช ื“ืจื™ืฉื•ืช ื”ื ื•ื’ืขื•ืช ืœืชื”ืœื™ื›ื™ื ื”ื ื“ืจืฉื™ื ื•ื ื”ืœื™ ื”ืคืขืœื” ืžืชื•ืขื“ื™ื ืœื ื™ื”ื•ืœ ืฉื™ื ื•ื™ื™ื ื•ืงื™ื‘ื•ืœืช, ืคื™ืชื•ื— ื•ื‘ื“ื™ืงื•ืช ื•ืกื‘ื™ื‘ื•ืช ืชืคืขื•ืœ, ื‘ืงืจื•ืช ื ื’ื“ ืชื•ื›ื ื•ืช ื–ื“ื•ื ื™ื•ืช ื•ื’ื™ื‘ื•ื™ ืžื™ื“ืข.

ื–ื” ืžืกืคืง ืžืกื’ืจืช ื‘ืจื•ืจื” ืฉื™ืฉ ืœืงื—ืช ื‘ื—ืฉื‘ื•ืŸ ืกื™ื›ื•ื ื™ ืื‘ื˜ื—ืช ืžื™ื“ืข, ืชื”ืœื™ื›ื™ ื ื™ื”ื•ืœ ื•ืžืจื›ื™ื‘ื™ื ืชืคืขื•ืœื™ื™ื ืžืจื›ื–ื™ื™ื ื›ื’ื•ืŸ ื”ืื•ืคืŸ ืฉื‘ื• ื™ืฉ ืœืฉืžื•ืจ ืขืœ ืขื“ื›ื ื™ื•ืช ืžืขืจื›ื•ืช IT, ื”ื’ื ืช ืื ื˜ื™-ื•ื™ืจื•ืก, ืื—ืกื•ืŸ ื ืชื•ื ื™ื ื•ื’ื™ื‘ื•ื™ื™ื, ื ื™ื”ื•ืœ ืฉื™ื ื•ื™ื™ื ื‘-IT ื•ืจื™ืฉื•ื ืื™ืจื•ืขื™ื.

ื”ืชื”ืœื™ื›ื™ื ื ื“ืจืฉ ืœืขืžื•ื“ ื‘ืชืงืŸ ISO 27001 ืžื‘ื™ื ืœืชื™ืขื•ื“ ื˜ื•ื‘ ื™ื•ืชืจ ื•ืžืฉืžืขื•ืช ื”ื“ื‘ืจ ื”ื™ื ืฉืœื›ืœ ื”ืฆื•ื•ืช ื™ื”ื™ื• ืงื•ื•ื™ื ืžื ื—ื™ื ื‘ืจื•ืจื™ื ืœืขืงื•ื‘ ืื—ืจื™ื”ื, ืžื” ืฉืขื•ื–ืจ ืœืฉืžื•ืจ ืขืœ ื”ืืจื’ื•ืŸ ื‘ื˜ื•ื— ื•ื ืงื™ ืžื”ืชืงืคื•ืช. ื–ื” ืขืฉื•ื™ ืœื›ืœื•ืœ ืžื“ื™ื ื™ื•ืช ืกื‘ื™ื‘ ื”ืฉื™ืžื•ืฉ ื‘ื›ื•ื ื ื™ื ื—ื™ืฆื•ื ื™ื™ื, ื’ืœื™ืฉื” ื‘ื˜ื•ื—ื” ื‘ืื™ื ื˜ืจื ื˜ ื•ืกื™ืกืžืื•ืช ื—ื–ืงื•ืช.

ื”ืชืงืคื•ืช ืกื™ื™ื‘ืจ ื•ื”ืคืจื•ืช ื ืชื•ื ื™ื ืชืžื™ื“ ืขืœื•ืœื•ืช ืœื”ืชืจื—ืฉ, ืื‘ืœ ื”ืชื›ื ื•ืŸ ืงื“ื™ืžื” ื”ืงืฉื•ืจ ื‘-ISO 27001 ืžื•ื›ื™ื— ืฉื”ืขืจื›ืช ืืช ื”ืกื™ื›ื•ื ื™ื, ื›ืžื• ื’ื ืืช ืจืฆื™ืคื•ืช ืขืกืงื™ืช ื•ืœื”ืคืจ ืืช ืชื•ื›ื ื™ืช ื”ื“ื™ื•ื•ื— ืื ื“ื‘ืจื™ื ื™ืฉืชื‘ืฉื• - ื‘ืชืงื•ื•ื” ืœื”ืคื—ื™ืช ืืช ื›ืœ ื”ืขืœื•ื™ื•ืช ืฉื ื’ืจืžื•.

ื ื™ืกื™ื•ืŸ ื‘-ISO 27001

ืžืฉืชืžืฉ ISMS.online, Oldfield Partners, ืžืชืืจ ื›ื™ืฆื“ ืœืคื ื™ ื”ืฉื™ืžื•ืฉ ื‘-ISMS.online ื”ื ื”ืฆืœื™ื—ื• ื™ื™ืฉื•ื ISO 27001 ืืš ื”ืฉืชืžืฉื• ื‘ืžืกืžื›ื™ื ื•ื’ื™ืœื™ื•ื ื•ืช ืืœืงื˜ืจื•ื ื™ื™ื ื‘ื™ื™ืฉื•ืžื™ื ืฉื•ื ื™ื ืฉื”ืฉืคื™ืขื• ืขืœ ื”ืคืจื•ื“ื•ืงื˜ื™ื‘ื™ื•ืช ื•ืขืœ ื™ื›ื•ืœืชื ืœื‘ืฆืข ืืช 'ืขื‘ื•ื“ืช ื”ื™ื•ื' ืฉืœื”ื. ืฉืึถืœึธื”ึถื ื‘ื“ื™ืงื” ื”ืชืงืจื‘ ื‘ืžื”ื™ืจื•ืช ื•ื”ื ืจืฆื• ืœืฉืคืจ ืืช ื”ืžืขืจื›ื•ืช ื”ืงื™ื™ืžื•ืช ืฉืœื”ื ื›ื“ื™ ืœื”ื“ื’ื™ื ืฉื™ืคื•ืจ ืขื ืื‘ื˜ื—ืช ืžื™ื“ืข ืžื™ื˜ื‘ื™ืช, ื•ืžื›ืืŸ ื”ื—ืœื˜ืชื ืœื”ืฉืชืžืฉ ื‘ืคืœื˜ืคื•ืจืžืช ISMS ืžื‘ื•ืกืกืช ืขื ืŸ.

ืงืจื ืืช ื”ืกื™ืคื•ืจ ืฉืœ Oldfield Partners.

"ืจืฆื™ื ื• ืœื”ื‘ื™ื ืฉื™ืคื•ืจื™ื ื•ืžื”ืจ. ื”ืคืชืจื•ืŸ ืฉืœ ISMS.online ื ืชืŸ ืœื ื• ืžื‘ื ื”, ืกื‘ื™ื‘ื•ืช ืขื‘ื•ื“ื” ืฉื ื‘ื ื• ื™ื™ืขื•ื“ื™ื™ื ื•ื›ืœื™ื ืฉืืคืฉืจื• ืœื ื• ืœื’ืจื•ื ืœ-ISMS ืฉืœื ื• ืœืคืขื•ืœ ื‘ืžื”ื™ืจื•ืช ื›ืžื• ืฉืจืฆื™ื ื•".

ืื ื“ื™ ืจื•ื‘ืจื˜ืก, ืจืืฉ ื”ื˜ื›ื ื•ืœื•ื’ื™ื” ื‘-Oldfield Partners LLP.

ื™ืชืจื•ืŸ 4: ืฆื™ื•ืช ืžืกื—ืจื™, ื—ื•ื–ื™ ื•ืžืฉืคื˜ื™

ื ืกืคื— ื.18 ืฉืœ ISO 27001 ืขื•ืกืง ื‘ืขืžื™ื“ื” ื‘ื“ืจื™ืฉื•ืช ืžืฉืคื˜ื™ื•ืช ื•ื—ื•ื–ื™ื•ืช. ื”ืžื˜ืจื” ื”ื™ื ืœืžื ื•ืข ื”ืคืจื•ืช ืฉืœ ื”ืชื—ื™ื™ื‘ื•ื™ื•ืช ืžืฉืคื˜ื™ื•ืช, ืกื˜ื˜ื•ื˜ื•ืจื™ื•ืช, ืจื’ื•ืœื˜ื•ืจื™ื•ืช ืื• ื—ื•ื–ื™ื•ืช ื”ืงืฉื•ืจื•ืช ืื‘ื˜ื—ืช ืžื™ื“ืข ื•ื›ืœ ื“ืจื™ืฉื•ืช ืื‘ื˜ื—ื”.

ื‘ืงืจื” ื˜ื•ื‘ื” ืžืชืืจืช โ€‹โ€‹ื›ื™ืฆื“ ื™ืฉ ืœื–ื”ื•ืช ื‘ืžืคื•ืจืฉ ืืช ื›ืœ ื”ื“ืจื™ืฉื•ืช ื”ื—ื•ืงื™ื•ืช, ื”ืจื’ื•ืœื˜ื•ืจื™ื•ืช, ื”ื—ื•ื–ื™ื•ืช ื”ืจืœื•ื•ื ื˜ื™ื•ืช ื•ื’ื™ืฉืช ื”ืืจื’ื•ืŸ ืœืขืžื•ื“ ื‘ื“ืจื™ืฉื•ืช ืืœื•. ืžืชื•ืขื“ ื•ืžืชืขื“ื›ืŸ ืขื‘ื•ืจ ื›ืœ ืžื™ื“ืข ื”ืžืขืจื›ืช ื•ื”ืืจื’ื•ืŸ.

ISMS.online ืžืงืœื” ื‘ืžื™ื“ื” ื ื™ื›ืจืช ืขืœ ืฆื“ ื”ืชืื™ืžื•ืช ืฉืœ ืื‘ื˜ื—ืช ืžื™ื“ืข. ืชื”ืœื™ื›ื™ ื”ืื™ืฉื•ืจ ื”ืžื•ื‘ื ื™ื ื•ื”ืชื–ื›ื•ืจื•ืช ื”ืื•ื˜ื•ืžื˜ื™ื•ืช ืœืกืงื™ืจื•ืช ื”ื•ืคื›ื™ื ืืช ื”ื—ื™ื™ื ืœื”ืจื‘ื” ื™ื•ืชืจ ืงืœื™ื ื•ืžืฆื™ืขื™ื 'ืชื•ื›ื ื™ืช ื—ื™ื™ื' ื›ื“ื™ ืœื”ืจืื•ืช ืœืžื‘ืงืจื™ื ืฉืืชื” ืฉื•ืœื˜ ื‘-ISMS.

ืืจื’ื•ืŸ ืฉืฉืงืœ ื•ื”ืฆื™ื‘ ืืช ื”ื“ืจื™ืฉื•ืช ื”ื ื“ืจืฉื•ืช ื›ื“ื™ ืœืขืžื•ื“ ื‘ ื ืกืคื— ื.18 ื”ืžืกื’ืจืช ืชื•ื›ืœ ืœื”ื•ื›ื™ื— ืœื›ืœ ืžื—ื–ื™ืงื™ ื”ืขื ื™ื™ืŸ ืฉื”ื™ื ื”ื‘ื˜ื™ื—ื” ืืช ืขืกืงื™ื” ืœืขืชื™ื“.

ืืœ ื”ืื ื™ ื”ื™ืชืจื•ื ื•ืช ืฉืœ ื™ื™ืฉื•ื ISO 27001 ื‘ืืจื’ื•ืŸ ืฉืœืš ื‘ืจื•ืจื™ื. ื–ื” ืžื•ื‘ื™ืœ ืœืžื•ื“ืœ ืขืกืงื™ ื—ื–ืง ื™ื•ืชืจ, ืœืืจื™ื›ื•ืช ื™ืžื™ื ื•- ืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข ืœื”ื™ื•ืช ื’ืื” ื‘.

ื”ืฉืœื‘ื™ื ื”ื‘ืื™ื โ€“ ืชื›ื ื•ืŸ ืžืงืจื” ืขืกืงื™ ืœืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข

ื”ื™ืชืจื•ื ื•ืช ืฉืœ ISO 27001 ื”ื ืžืฉืžืขื•ืชื™ื™ื ื•ืขื•ืœื™ื ื‘ืงืœื•ืช ืขืœ ืขืœื•ืช ืฉืœ ืžืขืจื›ืช ื ื™ื”ื•ืœ ืžื™ื“ืข ืžืงืฆื•ืขื™ืช.

ืœืžืขืฉื”, ื”ื”ื—ื–ืจ ืขืœ ื”ื”ืฉืงืขื” (ROI) ื™ื›ื•ืœ ืœื”ื™ื•ืช ื”ืจื‘ื” ื™ื•ืชืจ ืื˜ืจืงื˜ื™ื‘ื™ ืžืจื•ื‘ ื™ื•ื–ืžื•ืช ื”ืฆืžื™ื—ื” ื”ืขืกืงื™ื•ืช, ื‘ืžื™ื•ื—ื“ ืื ื”ื™ืฉืจื“ื•ืช ืืจื’ื•ืŸ ืชืœื•ื™ื” ื‘-ISMS ืฉื‘ืขืœื™ ื”ืขื ื™ื™ืŸ ื™ื›ื•ืœื™ื ืœืกืžื•ืš ืขืœื™ื• ืื• ืฉื”ื•ื ื ื“ืจืฉ ืœืขืžื•ื“ ื‘ืจื’ื•ืœืฆื™ื”.

ISMS.online ืชื•ืžืš ื›ืขืช ื‘-ISO 42001 - ืžืขืจื›ืช ื ื™ื”ื•ืœ ื”ื‘ื™ื ื” ื”ืžืœืื›ื•ืชื™ืช ื”ืจืืฉื•ื ื” ื‘ืขื•ืœื. ืœื—ืฅ ืœืžื™ื“ืข ื ื•ืกืฃ