The need for Information Security in organisations, regardless of their type and size, is being addressed by emerging standards and recommended best practices. The various standards and practices which evolved in recent years and are still being developed and constantly revised, address the issue of Information Security from different angles. Some of these have gained world-wide recognition through adoption by international standards' organisations, while others base their wide level of acceptance on the reputation of the bodies responsible for their compilation. This paper attempts to provide an overview of Information Security Standards and Practices by briefly discussing some of the most popular ones. Through a comparative study their similarities and differences are shown and, thus, some insight can be obtained on how their combination may lead to an increased level of Information Security. KEY WORDS information security management, information security standard, ISO 17799, B...
Evangelos D. Frangopoulos