Security Basics mailing list archives

Re: Mapping BS 25999 with ISo 17799


From: "Nikhil Wagholikar" <visitnikhil () gmail com>
Date: Sat, 8 Mar 2008 09:26:49 +0300

Hello hkhasgiwale,

ISO 17799 (now ISO 27002) is a guideline for ISO 27001, which is
Information Security Management System (ISMS). On the other hand, BS
25999 is a Business Continuity Management (BCM) standard. So these two
standards are different and serve different purposes altogether.

As far as overlapping is concerned, ISO 27001 has a part of BCP/DRP,
which is nothing more than a framework, whereas for BS 25999, this is
very comprehensive.

----
Nikhil Wagholikar
Information Security Analyst
NII Consulting
Web: http://www.niiconsulting.com/
Security Products: http://www.niiconsulting.com/products.html


On Fri, Mar 7, 2008 at 11:25 PM, WALI <hkhasgiwale () gmail com> wrote:
Are there any overlaps? I feel..there would be many. Is it worth going for
both at the same time while planning for process certification?

Pls advise!!




Current thread: