信息安全目標(biāo)測(cè)量規(guī)范翻譯-中英對(duì)照
Specifications of Surveys of Information Safety Objective
Edition record
版本Edition 變更理由
Alteration reason 編寫(xiě)
Audit 發(fā)布日期
Date issued 生效日期Effective date
1.0 版本建立
批準(zhǔn)人(簽名):
Approved by (Sign):
日期: Date:
信息安全目標(biāo)測(cè)量規(guī)范Specifications of Surveys of Information Safety Objective
1. 目的Purpose
為驗(yàn)證信息安全管理體系(ISMS)的有效實(shí)施,根據(jù)本公司信息安全方針制定信息安全目標(biāo),并規(guī)定信息安全目標(biāo)的計(jì)算方法,以便于目標(biāo)達(dá)成情況的考核。In order to verify the effective implementation of the Information Security Management System (ISMS), formulate the information safety objectives according to the policy of information safety of our company, stipulate the accessing method of information safety objectives, so as to examine the realization the objectives.
2. 適用范圍Scope of application
本方針的適用于信息安全管理體系的目標(biāo)測(cè)量活動(dòng)。The policy is suitable for the measuring activities of Information Security Management System.
2.1. 職責(zé)Duty
IT部:IT department:
根據(jù)公司安全管理的實(shí)際情況,制定信息安全管理體系目標(biāo);According to the actual conditions of company's safety management, formulate the objectives of the Information Security Management System;
每季度的第一周統(tǒng)計(jì)上一季度的目標(biāo)達(dá)成情況;To gather statistics of the previous quarter in the first week of each quarter;
每年度管理評(píng)審前統(tǒng)計(jì)年度目標(biāo)達(dá)成情況,并根據(jù)實(shí)際需要調(diào)整信息安全目標(biāo)。To gather statistics of the realization of the annual objective before the annual management evaluation, and adjusted the objective of information safety according to the actual conditions.
總經(jīng)理:General Manager
總經(jīng)理負(fù)責(zé)審核、批準(zhǔn)、發(fā)布信息安全目標(biāo),并推動(dòng)目標(biāo)的達(dá)成。The general manager is responsible for verification, approval and issuing of objectives of information safety, and promotes the realization of the objectives.
3. 術(shù)語(yǔ)和定義Terms and definitions
4. 相關(guān)/支持性文件Relevant / supporting document
• 《信息安全管理體系手冊(cè)》“Information Security Management System manual”
• 《記錄控制程序》“Record of control procedure”
5. 記錄管理Record management
記錄Record 保存期限Storage period 位置Position 責(zé)任人Person liable
xx年度第x季度目標(biāo)測(cè)量報(bào)告Measuring report of the quarters of in year 3年 3 years
xx年度目標(biāo)測(cè)量報(bào)告Measuring report of year 3年3 years
6. 規(guī)范內(nèi)容Specification content
6.1. 保密管理目標(biāo)Confidential management objectives
總目標(biāo):泄密次數(shù)0次/季度General objective: Reveal 0 times of / quarter
分解目標(biāo):Details:
違規(guī)打開(kāi)機(jī)箱次數(shù):0次/季度The times of the opening computer housing in violation of rules and regulations: 0 times / quarter
違規(guī)帶入移動(dòng)介質(zhì)(含帶存儲(chǔ)功能的手機(jī))進(jìn)入辦公場(chǎng)所次數(shù):1次/季度Bring into the moving medium in violation of rules and regulations ( Include the cell-phone with functions of the memory); times of entering into the office premises: Once / quarter
違規(guī)帶入攝像設(shè)備(含帶照相功能的手機(jī))進(jìn)入安全區(qū)域次數(shù):1次/季度Bring into the video recording in violation of rules and regulations ( Include the cell-phone with functions of taking picture); times of entering into the security premises: Once / quarter
違規(guī)使用賬號(hào)和口令次數(shù):Times of use the account number and password in violation of rules and regulations:
測(cè)量方法:Measuring method:
每周抽查隨機(jī),抽查比例不低于5% Check at random every week, the checking part shall not be lower than 5%
6.2. 其他管理目標(biāo)Other management objectives
違規(guī)進(jìn)入安全區(qū)與次數(shù):1次/季度Times of entering into the safety zone and number of in violation of rules and regulations: Once / quarter
網(wǎng)絡(luò)服務(wù)可用性:95% (不含計(jì)劃停機(jī)時(shí)間) Network service usability: 95% (not include the time of shutting down of plan )
2012.12.23