GB/T 20985.1-2017

Active

Information technology - Security techniques - Information security incident management - Part 1: Principles of incident management

信息技术 安全技术 信息安全事件管理 第1部分:事件管理原理

Standard Type
GBT
ICS
35.040
CCS
L80
Status
Active
Issue Date
2017-12-29
Implementation
2018-07-01
Centralized Committee
国家标准委
Issuing Authority
中华人民共和国国家质量监督检验检疫总局、中国国家标准化管理委员会

Application Summary AI generated

This standard establishes the principles and framework for managing information security incidents, including detection, reporting, assessment, and response. It is applied by organizations in any industry to structure their incident management processes, ensuring consistent handling of security breaches and minimizing operational impact. The standard is particularly relevant for IT security teams, compliance officers, and auditors implementing or auditing incident management systems.

Related Standards

Transparency note: The application summary and key sentences on this page were automatically generated by AI from the standard's original text. This content has not been human-verified and should not be used for compliance or regulatory purposes. Always refer to the official standard document from the issuing authority.