ืชื•ื›ื ืช isms

ื›ื™ืฆื“ ืœืขืจื•ืš ืกืงื™ืจืช ื ื™ื”ื•ืœ ISO 27001 ืฉืœืš

ืžื”ื™ ืžื˜ืจืช ืกืงื™ืจืช ื”ื ื™ื”ื•ืœ ืฉืœ ISO 27001:2013?

ื”ืขืจืš ืฉืœ ืกืงื™ืจืช ื ื™ื”ื•ืœ ืžืขืจื›ืช ืื‘ื˜ื—ืช ื”ืžื™ื“ืข (ISMS) ืื™ื ื• ืžื•ืขืจืš ืœืจื•ื‘.

ื—ืœืงื ืขืฉื•ื™ื™ื ืœื”ืกืชื›ืœ ืขืœ ื–ื” ื›ื“ืจื™ืฉืช ืชื™ื•ื’ ืฉืฆืจื™ื›ื” ืœื”ืชืงื™ื™ื ืืš ื•ืจืง ื›ื“ื™ ืœืขืžื•ื“ ื‘ื” ISO 27001 ื“ืจื™ืฉื” 9.3. ืขื ื–ืืช, ื›ื“ื™ ื‘ืืžืช 'ืœื—ื™ื•ืช ื•ืœื ืฉื•ื' ื ื•ื”ืœื™ ืื‘ื˜ื—ืช ืžื™ื“ืข ื˜ื•ื‘ื™ื, ืชืคืงื™ื“ื• ืœื ื™ืกื•ืœื ื‘ืคื–.

ืžื˜ืจืช ืกืงื™ืจืช ื”ื”ื ื”ืœื” ื”ื™ื ืœื”ื‘ื˜ื™ื— ืฉื”-ISMS ื•ื™ืขื“ื™ื• ื™ื™ืฉืืจื• ืžืชืื™ืžื™ื, ื ืื•ืชื™ื ื•ืืคืงื˜ื™ื‘ื™ื™ื ื‘ื”ืชื—ืฉื‘ ื‘ืžื˜ืจื”, ื‘ื ื•ืฉืื™ื ื•ืกื™ื›ื•ื ื™ื ืฉืœ ื”ืืจื’ื•ืŸ. ืืœื” ื˜ื•ืคืœื• ื‘ืขื‘ืจ ื‘ืคื ื™ื 4.1 ื”ืืจื’ื•ืŸ ื•ื”ื”ืงืฉืจ ืฉืœื•, 4.2 ื”ื“ืจื™ืฉื•ืช ืฉืœ ื‘ืขืœื™ ืขื ื™ื™ืŸ, ื•- 6.1.ื ื™ื”ื•ืœ ืกื™ื›ื•ื ื™ื.

ื”ืชื•ืฆืื•ืช ืกืงื™ืจืช ื”ื”ื ื”ืœื” ืชืืคืฉืจ ืœื”ื ื”ืœื” ื”ื‘ื›ื™ืจื” ืœืงื‘ืœ ืžื™ื“ืข ื˜ื•ื‘, ื”ื—ืœื˜ื•ืช ืืกื˜ืจื˜ื’ื™ื•ืช ืฉืชื”ื™ื” ืœื”ืŸ ื”ืฉืคืขื” ืžื”ื•ืชื™ืช ืขืœ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข ื•ื”ื“ืจืš ื‘ื” ื”ืืจื’ื•ืŸ ืžื ื”ืœ ืื•ืชื”.

 

ืžื” ืฆืจื™ืš ืœื›ืœื•ืœ ื‘ืกืงื™ืจืช ื”ื”ื ื”ืœื”?

ืกืงื™ืจืช ื”ื”ื ื”ืœื” ื—ื™ื™ื‘ืช ืœืขืงื•ื‘ ืื—ืจ ื ืชึถืงึถืŸ ืคื•ืจืžื˜ ืฉืžืกืชื›ืœ ืขืœ ื”ืฆื™ืคื™ื•ืช ืฉืœ ISO 27001: 2103.

ื™ื™ืชื›ืŸ ื’ื ืฉื”ืืจื’ื•ืŸ ืžืขื•ื ื™ื™ืŸ ืœื›ืœื•ืœ ื‘ืกืงื™ืจื” ืžืฉื˜ืจื™ ืฆื™ื•ืช ืื—ืจื™ื, ื›ื’ื•ืŸ ื™ืกื•ื“ื•ืช ืกื™ื™ื‘ืจ, ISO 9001 ื•ืฉื™ื˜ื•ืช ืขื‘ื•ื“ื” ื˜ื•ื‘ื•ืช ืื—ืจื•ืช, ื›ื“ื™ ืœื”ืงืœ ืขืœ ื‘ื™ืงื•ืจื•ืช ืืคืงื˜ื™ื‘ื™ื•ืช ื•ืงื‘ืœืช ื”ื—ืœื˜ื•ืช ืžื•ืฉื›ืœืช.

 

ืกืงื™ืจืช ื”ื”ื ื”ืœื” ISO 27001 ืฆืจื™ื›ื” ืœื›ืœื•ืœ ื”ืชื™ื™ื—ืกื•ืช ืœ:

ื) ืžืฆื‘ ื”ืคืขื•ืœื•ืช ืžืกืงื™ืจื•ืช ื”ื”ื ื”ืœื” ื”ืงื•ื“ืžื•ืช;

ื‘) ืฉื™ื ื•ื™ื™ื ื‘ืกื•ื’ื™ื•ืช ื—ื™ืฆื•ื ื™ื•ืช ื•ืคื ื™ืžื™ื•ืช ื”ืจืœื•ื•ื ื˜ื™ื•ืช ืœ ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ืžื™ื“ืข ืžืขืจื›ืช;

ื’) ืžืฉื•ื‘ ืขืœ ื‘ื™ืฆื•ืขื™ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข, ื›ื•ืœืœ ืžื’ืžื•ืช ื‘:

  1. ืื™ ื”ืชืืžื•ืช ื•ืžืชืงื ื•ืช ืคืขื•ืœื•ืช;
  2. ื ื™ื˜ื•ืจ ื•ืžื“ื™ื“ื” ืชื•ืฆืื•ืช;
  3. ื‘ื“ื™ืงื” ืชื•ืฆืื•ืช; ื•
  4. ื”ื’ืฉืžื” ืฉืœ ืžื˜ืจื•ืช ืื‘ื˜ื—ืช ืžื™ื“ืข.

ื“) ืžืฉื•ื‘ ืž ื‘ืขืœื™ ืขื ื™ื™ืŸ;

ื”) ืชื•ืฆืื•ืช ืฉืœ ื”ืขืจื›ืช_ืกื™ื›ื•ืŸโ€>ื”ืขืจื›ืช ืกื™ื›ื•ื ื™ื ื•ืžืฆื‘ ื”ื˜ื™ืคื•ืœ ื‘ืกื™ื›ื•ืŸ ืœึฐืชึทื›ึฐื ึตืŸ; ื•

ื•) ื”ื–ื“ืžื ื•ื™ื•ืช ืขื‘ื•ืจ ืฉื™ืคื•ืจ ืžืชืžืฉืš.

ื™ื™ืชื›ืŸ ืฉืชืจืฆื” ืœื”ื•ืกื™ืฃ ื ืงื•ื“ื” ื ื•ืกืคืช ื–) ื”ืกื›ืžื” ืขืœ ืžื™ืงื•ื“ ื”ื‘ื™ืงื•ืจืช ืœืชืงื•ืคื” ื”ืงืจื•ื‘ื”. ื–ื” ืื•ืคืฆื™ื•ื ืœื™ ืื ืืชื” ื–ืจื™ื– ืืจื’ื•ืŸ ื•ืื™ื ื• ืžืกื•ื’ืœ ืœืฆื™ื™ืŸ ื‘ืื•ืคืŸ ืžืœื ืืช ื›ืœ ืชื•ื›ื ื™ืช ื”ื‘ื™ืงื•ืจืช ื•ืœืชื›ื ืŸ ื™ื•ืชืจ ืžื“ื™ ื–ืžืŸ ืžืจืืฉ. ืื‘ืœ ื–ื›ื•ืจ ืฉื›ืžื” ืžื‘ืงืจื™ื ื—ื™ืฆื•ื ื™ื™ื ืจื•ืฆื™ื ื™ื•ืชืจ ื‘ื”ื™ืจื•ืช ืขืœ ื›ืœ ื”ืชื•ื›ื ื™ืช ืœืื•ืจืš ืžื—ื–ื•ืจ ื”ื”ืกืžื›ื”!

ื”ืชืคื•ืงื•ืช ืฉืœ ืกืงื™ืจืช ื”ื”ื ื”ืœื” ืฆืจื™ื›ื•ืช ืœื›ืœื•ืœ ื”ื—ืœื˜ื•ืช ื”ืงืฉื•ืจื•ืช ืฉื™ืคื•ืจ ืžืชืžืฉืš ื”ื–ื“ืžื ื•ื™ื•ืช ื•ื›ืœ ืฆื•ืจืš ื‘ืฉื™ื ื•ื™ื™ื ื‘ืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข.

ืžื™ ืฆืจื™ืš ืœื”ืฉืชืชืฃ ื‘ืกืงื™ืจืช ื”ื”ื ื”ืœื”?

ื‘ื”ืชื—ืฉื‘ ื‘ืืžื•ืจ ืœืขื™ืœ, ื‘ืจื•ืจ ืœืจืื•ืช ื›ื™ ื‘ื”ืชื—ืฉื‘ ื‘ืจืื•ื™, ื” ISO 27001 ื‘ื™ืงื•ืจืช ื”ื”ื ื”ืœื” ื”ื™ื ื”ื›ืจื—ื™ืช ื›ืœื™ ืขืœ ื”ื‘ื˜ื—ืช ื”-ISMS ืžืžืฉื™ืš ืœื”ื™ื•ืช ื™ืขื™ืœ ื‘ืื—ืช ืžื™ืขื“ื™ ื”ืžืคืชื— ืฉืœื•, ื–ื• ืฉืœ ื”ืคื—ืชื” ืกื™ื›ื•ื ื™ ืื‘ื˜ื—ืช ืžื™ื“ืข.

ื›ื“ื™ ืฉื”-ISMS ื™ื”ื™ื” ื™ืขื™ืœ ื‘ืืจื’ื•ืŸ, ื”ื•ื ืฆืจื™ืš ื‘ื›ื™ืจ ืžื—ื•ื™ื‘ื•ืช ื”ื”ื ื”ืœื” ื•ื›ื›ื–ื”, ื”ื’ื™ื•ื ื™ ืฉืœื—ื‘ืจื™ "ื“ื™ืจืงื˜ื•ืจื™ื•ืŸ" ืฉืœ ISMS ื™ื”ื™ื• ืกืžื›ื•ื™ื•ืช ื‘ื ื•ืฉืื™ื ื”ื ื•ื’ืขื™ื ืœืื‘ื˜ื—ืช ืžื™ื“ืข.

ื‘ื“ืจืš ื›ืœืœ ืžื•ืขืฆืช ISMS ืขืฉื•ื™ื” ืœื›ืœื•ืœ ืืช ืงืฆื™ืŸ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข ื”ืจืืฉื™ (CISO), ื‘ืขืœ ืกื™ื›ื•ื ื™ ืžื™ื“ืข ื‘ื›ื™ืจ (SIRO), ืงืฆื™ืŸ ื˜ื›ื ื™ ืจืืฉื™ ื•ืื•ืœื™ ืืคื™ืœื• ืืช ื”ืžื ื›"ืœ.

ื”ืชืคื•ืงื•ืช ืฉืœ ืกืงื™ืจืช ื”ื”ื ื”ืœื” ื™ื›ืœืœื• ื”ื—ืœื˜ื•ืช ื”ืงืฉื•ืจื•ืช ืฉื™ืคื•ืจ ืžืชืžืฉืš ื”ื–ื“ืžื ื•ื™ื•ืช ื•ื›ืœ ืฆื•ืจืš ื‘ืฉื™ื ื•ื™ื™ื ื‘ืžืขืจื›ืช ื ื™ื”ื•ืœ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข.

 

ืชื“ื™ืจื•ืช ืกืงื™ืจืช ื”ื”ื ื”ืœื”

ื™ืฉ ื“ืจื™ืฉืช ืžื™ื ื™ืžื•ื ืœื‘ื™ืฆื•ืข ื ืกืงื™ืจื” ืžื ื”ืœืชื™ืช ืคืขื ื‘ืฉื ื”, ื•ื‘ืชื“ื™ืจื•ืช ื’ื‘ื•ื”ื” ื™ื•ืชืจ ืื ื™ืฉ ืฉื™ื ื•ื™ื™ื ืžื”ื•ืชื™ื™ื ืฉื™ื›ื•ืœื™ื ืœื”ืฉืคื™ืข ืขืœ ืื‘ื˜ื—ืช ื”ืžื™ื“ืข ื•ื”-ISMS.

ืขื ื–ืืช, ื”ืชื“ื™ืจื•ืช ืชื•ื’ื“ืจ ืขืœ ื™ื“ื™ ื“ืจื™ืฉืช ื”ื”ื ื”ืœื” ืœื ื˜ืจ ืืช ื”ืฆืœื—ืช ื”-ISMS. ืงื™ื™ืžืช ื’ื ืกื›ื ื” ืฉื›ื›ืœ ืฉื”ืžืจื•ื•ื— ื™ื”ื™ื” ื’ื“ื•ืœ ื™ื•ืชืจ, ื”ืขื‘ื•ื“ื” ืฉืชื”ื™ื” ื›ืจื•ื›ื” ื‘ืกืงื™ืจืช ื”ืชืงื•ืคื” ื”ืงื•ื“ืžืช ื’ื“ื•ืœื” ื™ื•ืชืจ. ื–ื” ื’ื ืžื’ื‘ื™ืจ ืืช ื”ืกื™ื›ื•ืŸ ืœื›ืฉืœ ื‘-ISMS ืœื ืžื–ื•ื”ื” ื‘ืื•ืคืŸ ืžื™ื™ื“ื™.

ืžืกื™ื‘ื” ื–ื•, ืื ื• ืžืžืœื™ืฆื™ื ืžื“ื™ ื—ื•ื“ืฉ, ื“ื•-ื—ื•ื“ืฉื™ ืื• ืืคื™ืœื• ืจื‘ืขื•ื ื™ ืื ื”-ISMS ืฉืœืš ื“ื™ ื™ืฆื™ื‘. ื‘ึผึฐื”ึถื—ืœึตื˜, ืกืงื™ืจื•ืช ื”ื”ื ื”ืœื” ื—ื™ื™ื‘ื•ืช ืœื”ืชืงื™ื™ื ื‘ืžื•ืขื“ ื”ืžืชื•ื›ื ืŸ ืžืจื•ื•ื—ื™ ื–ืžืŸ ื›ื“ื™ ืœื”ื‘ื˜ื™ื— ืฉื”-ISMS ื™ื™ืฉืืจ "ืžืชืื™ื, ื”ื•ืœื ื•ืืคืงื˜ื™ื‘ื™".

ืœืžื™ ืฉืžื—ืคืฉ ISO 27001 ื”ืกืžื›ื” ืฉืœ ื”-ISMS ืฉืœื”ื, ื—ืฉื•ื‘ ื’ื ืœืฆื™ื™ืŸ ืฉืงื™ื™ืžืช ื“ืจื™ืฉื” ืœื”ื•ื›ื™ื—, ื‘ืžื”ืœืš ื‘ื™ืงื•ืจืช ืฉื•ืœื—ืŸ ื”ืขื‘ื•ื“ื” ืฉืœื‘ 1, ืฉื”ื‘ื™ืงื•ืจื•ืช ื”ืจื’ื™ืœื•ืช ืžืชืงื™ื™ืžื•ืช.

At ISMS.online ืื ื• ืžืฆื™ืขื™ื ืกืงื™ืจื•ืช ืฉื‘ื•ืขื™ื•ืช ืฉืœ ื”ื”ื ื”ืœื” ืœืคื ื™ ื‘ื™ืงื•ืจืช ืฉืœื‘ 1, ืฉื›ืŸ ื–ื” ื™ืฉืžื•ืจ ืขืœ ืคืจื•ื™ืงื˜ ื”ื”ื˜ืžืขื” ืฉืœืš ืขืœ ื”ืžืกืœื•ืœ, ืชื‘ื ื” ืืช ื”ื”ืจื’ืœ, ื•ืชื•ืš ื—ื•ื“ืฉ ืื—ื“ ืชื‘ื ื” ืžืกืคื™ืง ืจืื™ื•ืช, ืชื•ืš ืฉื™ืžื•ืฉ ื‘ืฉื™ื˜ื•ืช ื”ืงืœื•ืช ืชื•ื›ื ื™ืช ืกืงื™ืจืช ื ื™ื”ื•ืœ ื‘ืคืœื˜ืคื•ืจืžื”, ื›ื“ื™ ืœืจืฆื•ืช ืืช ื”ืžื‘ืงืจ.

 

ื›ื™ืฆื“ ืœื ื”ืœ ืชืงืฉื•ืจืช ื•ืคืขื•ืœื•ืช

ื‘ื“ืจืš ื›ืœืœ ืกืงื™ืจืช ื”ื”ื ื”ืœื” ืชื”ื™ื” ื›ืจื•ื›ื” ื‘ื”ืคืฆื”, ื‘ื“ื•ื"ืœ ืžืจืืฉ, ืฉืœ ื”ื”ื–ืžื ื•ืช ืœืคื’ื™ืฉื”, ืกื“ืจ ื”ื™ื•ื, ื”ืจืื™ื•ืช ื•ื”ื“ื•ื—ื•ืช ืœื‘ื“ื™ืงื”, ืื• ื›ื“ื™ ืœืชืžื•ืš ื‘ืกืงื™ืจื”, ื•ื”ืคืจื™ื˜ื™ื ื”ืงื•ื“ืžื™ื ืฉื“ืจืฉื• ืคืขื•ืœื”.

ื‘ืžื”ืœืš ื”ืกืงื™ืจื”, ื ื™ืชืŸ ืœืจืฉื•ื ื”ืขืจื•ืช ืœืžืžืฆืื™ื ืœืฆื•ืจืš ื›ืชื™ื‘ื” ื•ื”ืคืฆื” ื‘ื”ืžืฉืš.

ืชื—ื•ืžื™ื ืฉื™ื–ื•ื”ื• ืœืคืขื•ืœื•ืช ืžืชืงื ื•ืช ื•ืฉื™ืคื•ืจื™ื ื™ืฆื˜ืจื›ื• ืœื”ื™ื•ืช ืžืชื•ืขื“ื™ื ื•ืœื”ื˜ื™ืœ ืขืœื™ื”ื ืžืฉื™ืžื” ืœืื ืฉื™ื ืฉื™ื”ื™ื• ืื—ืจืื™ื ืœื”ืฉืœืžืช ืคืขื•ืœื•ืช ืืœื•.

ื‘ื›ืœ ืฉืœื‘, ื™ืฉ ืœืฉืžื•ืจ ืจืื™ื•ืช ื›ื“ื™ ืœืฉื›ื ืข ืžื‘ืงืจ ื—ื™ืฆื•ื ื™ ืฉื”ืกืงื™ืจื” ื•ื”ืชื”ืœื™ื›ื™ื ืžืชืงื™ื™ืžื™ื ื•ื™ืขื™ืœื™ื.

ื–ื” ื”ืจื‘ื” ืžื™ื™ืœื™ื, ื”ืจื‘ื” ืชื›ื ื•ืŸ ื•ื”ืจื‘ื” ื”ื•ื›ื—ื•ืช!

ืชืืจ ืœืขืฆืžืš ืื™ื ื˜ืจื ื˜ ืชื•ื›ื ื™ืช ื‘ื™ืงื•ืจืช ื”ื”ื ื”ืœื” ืฉื”ืงืœ ืขืœ ื”ืงืžืช ืฆื•ื•ืช ื”-ISMS Board ืฉืœืš, ืงืœ ืœืชื–ืžืŸ ืกืงื™ืจื•ืช ื•ืœืขืงื•ื‘ ืื—ืจ ืกื“ืจ ื™ื•ื ืกื˜ื ื“ืจื˜ื™, ืคืฉื•ื˜ ืœืงืฉืจ ืœืกืงื™ืจื•ืช ืงื•ื“ืžื•ืช ื•ืœื›ืœ ื”ืžื™ื“ืข ื”ื“ืจื•ืฉ, ื•ืคืฉื•ื˜ ืœื”ืงืฆื•ืช ื•ืœืขืงื•ื‘ ืื—ืจ ืคืขื•ืœื•ืช ืžืชืงื ื•ืช ื•ืฉื™ืคื•ืจื™ื?

 

ืืชื” ืžื“ืžื™ื™ืŸ ISMS.online ืฉื”ื•ืคืš ืืช ื ื™ื”ื•ืœ ื”-ISMS ื”ืžืœื ืฉืœืš ืœืคืฉื•ื˜.

 

ื—ื‘ืจ ื”ื›ืœ ื™ื—ื“ ื‘ืกื‘ื™ื‘ื” ืžืื•ื‘ื˜ื—ืช ื•ืžืงื•ื•ื ืช ืื—ืช ืฉื‘ื” ืืชื” ื™ื›ื•ืœ ืœืฉืชืฃ ืคืขื•ืœื” ืขื ืขืžื™ืชื™ื, ืœืœื›ื•ื“ ืืช ื”ืจืื™ื•ืช ื”ื ื“ืจืฉื•ืช ืคืขื ืื—ืช ื‘ืœื‘ื“ ื•ืœื ื•ื•ื˜ ืืœื™ื”ืŸ ื‘ืงืœื•ืช ืœืคื ื™, ื‘ืžื”ืœืš ื•ืื—ืจื™ ื”ืกืงื™ืจื”.

ืืชื” ืืคื™ืœื• ืœื ืฆืจื™ืš ืฉื›ืœ ื—ื‘ืจื™ ื”ื”ื ื”ืœื” ื™ื”ื™ื• ื‘ื™ื—ื“ ื‘ืžืงื•ื ืื—ื“... ื‘ืฆืขื• ืืช ื–ื” ื‘ืื™ื ื˜ืจื ื˜ ื•ื—ืกื›ื• ื–ืžืŸ ื•ื”ื•ืฆืื•ืช ื ืกื™ืขื”!

ื›ืœื•ืœ ืฉืœื ื• ืžืืžืŸ ื•ื™ืจื˜ื•ืืœื™ ืชื›ื ื™ืช ืœื”ื›ื•ื•ื ื” ืžืงืฆื•ืขื™ืช ื•ื™ื™ืขื•ืฅ ืคืจื’ืžื˜ื™ ื‘ื›ืœ ืื—ืช ืžื”ืคืขื™ืœื•ื™ื•ืช ื”ื ื“ืจืฉื•ืช

ISMS.online ืชื•ืžืš ื›ืขืช ื‘-ISO 42001 - ืžืขืจื›ืช ื ื™ื”ื•ืœ ื”ื‘ื™ื ื” ื”ืžืœืื›ื•ืชื™ืช ื”ืจืืฉื•ื ื” ื‘ืขื•ืœื. ืœื—ืฅ ืœืžื™ื“ืข ื ื•ืกืฃ