What is ISO/IEC 27013 - Information technology security techniques?
ISO/IEC 27013 is an international standard that focuses on information technology, integration and implementation of security techniques. ISO/IEC 27013 provides guidance on the integrated implementation of ISO/IEC 27001 and ISO/IEC 20000-1 for those organizations which are intending to either:
- Implement ISO/IEC 27001 when ISO/IEC 20000-1 is already implemented or vice versa
- Implement both ISO/IEC 27001 and ISO/IEC 20000-1 together
- Integrate existing ISO/IEC 27001 and ISO/IEC 20000-1 management systems
Who is ISO/IEC 27013 - Information technology security techniques for?
ISO/IEC 27013 on information technology, integration and implementation of security techniques is useful for:
- IT organisations and institutions
- Cyber security teams
- IT departments
- Engineers and developers
Why should you use ISO/IEC 27013 - Information technology security techniques?
The relationship between information security and service management is so close that many organizations already recognize the benefits of adopting both standards: ISO/IEC 27001 for information security, and ISO/IEC 20000-1 for service management. ISO/IEC 27013 is common for an organization to improve the way it operates to conform with the requirements of one International Standard and then make further improvements to conform to the requirements of the other.
There are several advantages in ISO/IEC 27013 that considers not only the services provided but also the protection of information assets. These benefits can be experienced whether one standard is implemented before the other, or both standards are implemented simultaneously. Management and organizational processes can derive benefit from the similarities between ISO/IEC 27013 and their common objectives.