ISO/IEC 27009

E516509

ISO/IEC 27009 is an international standard that provides sector-specific guidance for applying and tailoring ISO/IEC 27001 information security management system requirements to particular industries or domains.

All labels observed (2)

Label Occurrences
ISO 27009 1
ISO/IEC 27009 canonical 1

How this entity was disambiguated

Statements (36)

Predicate Object
instanceOf Information security standard ⓘ
International standard ⓘ
aimsTo Ensure compatibility with ISO/IEC 27001 ⓘ
Promote consistent use of ISO/IEC 27001 across sectors ⓘ
appliesTo Specific domains ⓘ
Specific sectors ⓘ
belongsToDomain Cybersecurity ⓘ
Risk management ⓘ
defines Requirements for sector-specific standards based on ISO/IEC 27001 ⓘ
developedBy ISO/IEC JTC 1 ⓘ
ISO/IEC JTC 1/SC 27 ⓘ
ensures Alignment of sector-specific standards with ISO/IEC 27001 structure ⓘ
Consistency of terminology with ISO/IEC 27001 ⓘ
focusesOn Information security management systems ⓘ
hasAbbreviation ISO 27009 ⓘ
linked to: ISO/IEC 27009
intendedAudience Experts tailoring ISO/IEC 27001 to specific industries ⓘ
Organizations developing sector-specific ISMS standards ⓘ
language English ⓘ
objective Avoid conflicting sector-specific interpretations of ISO/IEC 27001 ⓘ
Facilitate harmonized sector-specific ISMS requirements ⓘ
partOfSeries ISO/IEC 27000 family ⓘ
providesGuidanceFor Sector-specific application of ISO/IEC 27001 ⓘ
Tailoring ISO/IEC 27001 requirements ⓘ
publishedBy International Electrotechnical Commission ⓘ
International Organization for Standardization ⓘ
relatedToStandard ISO/IEC 27001 ⓘ
linked to: ISO 27001

ISO/IEC 27002 ⓘ
specifies How to add sector-specific requirements to ISO/IEC 27001 ⓘ
How to refine ISO/IEC 27001 controls for a sector ⓘ
subjectArea Information security ⓘ
Management systems ⓘ
supports Development of sector-specific information security standards ⓘ
typeOfDocument Requirements and guidance standard ⓘ
usedBy Industry associations ⓘ
Sector-specific regulatory bodies ⓘ
Standards developers ⓘ

How these facts were elicited

Referenced by (2)

Full triples — surface form annotated when it differs from this entity's canonical label.

ISO/IEC 27000 family → includesStandard → ISO/IEC 27009 ⓘ
ISO/IEC 27009 → hasAbbreviation → ISO 27009 ⓘ
linked to: ISO/IEC 27009