|
INFORMATION SECURITY
Information is a high-value asset for any business. Information security is a priority issue for the management team but it also affects personnel, organization of work, business processes, technologies and company policies. The building of information security is a process designed to minimize risks associated with the loss, compromising and unauthorized use of information which can have a negative impact on the organization. Information security seeks to protect its:
- confidentiality – information is accessed only by authorized individuals;
- integrity – information is complete, correct and its integrity is not affected by changes;
- availability – authorized individuals can access the information when necessary.
The standards ISO 17799:2000 / BS 7799-2
ISO 17799:2000 standard contains recommendations for information security management. It covers different aspects of security such as:
- Contingency planning.
- Physical security.
- Personnel security matters.
- Control of access to information systems.
- Security in development and maintenance of information systems.
ISO 17799:2000 contains best practices in the field
of information security which can be applied to any organization
regardless of its size or operations. The standard is not connected
to any specific information technology. BS 7799-2 defines the requirements
for an information security system.
The building of an information security system according
to the requirements of ISO 17799:2000 / BS7799-2 pair of standards
is probably the most appropriate way to manage information associated
risks in any company.
The role of STARX
STARX is one of the first companies in Bulgaria offering
services related to the development of information security systems
according to ISO 17799 / BS 7799-2 standards. STARX works with a
methodology that has been validated in practice.
The company employs experts with long experience in
information systems development, including such for the banking
sector. This, in combination with the STARX experience in developing
management systems allows us to satisfy any client looking for high
quality professional services.
|