您的位置: 标准下载 » 国际标准 » ISO 国际标准 »

ISO 22307-2008 金融业务.隐私影响评估

时间:2024-04-30 02:34:44 来源: 标准资料网 作者:标准资料网 阅读:9996
下载地址: 点击此处下载
【英文标准名称】:Financialservices-Privacyimpactassessment
【原文标准名称】:金融业务.隐私影响评估
【标准号】:ISO22307-2008
【标准状态】:现行
【国别】:国际
【发布日期】:2008-05
【实施或试行日期】:
【发布单位】:国际标准化组织(IX-ISO)
【起草单位】:ISO/TC68
【标准类型】:()
【标准水平】:()
【中文主题词】:估计可靠性;评估;价值评估;银行业务;兼容性;机密性;数据采集;数据分析;数据收集;数据交换;数据保护;数据记录;数据安全;数据存储;定义;金融机关;金融机构;金融业务;信息;个人的;资料保护;危险
【英文主题词】:Assessedreliability;Assessment;Assessmentofvalue;Bankoperations;Compatibility;Confidentiality;Dataacquisition;Dataanalysis;Datacollection;Dataexchange;Dataprotection;Datarecording;Datasecurity;Datastorage;Definitions;Evaluations;Financialinstitutions;Financialservices;Information;Privat;Risk
【摘要】:ThisInternationalStandardrecognizesthataprivacyimpactassessment(PIA)isanimportantfinancialservicesandbankingmanagementtooltobeusedwithinanorganization,orby“contracted”thirdparties,toidentifyandmitigateprivacyissuesandrisksassociatedwithprocessingconsumerdatausingautomated,networkedinformationsystems.ThisInternationalStandard-describestheprivacyimpactassessmentactivityingeneral,-definesthecommonandrequiredcomponentsofaprivacyimpactassessment,regardlessofbusinesssystemsaffectingfinancialinstitutions,and-providesinformativeguidancetoeducatethereaderonprivacyimpactassessments.Aprivacycomplianceauditdiffersfromaprivacyimpactassessmentinthatthecomplianceauditdeterminesaninstitution’scurrentlevelofcompliancewiththelawandidentifiesstepstoavoidfuturenon-compliancewiththelaw.Whiletherearesimilaritiesbetweenprivacyimpactassessmentsandprivacycomplianceauditsinthattheyusesomeofthesameskillsandthattheyaretoolsusedtoavoidbreachesofprivacy,theprimaryconcernofacomplianceauditissimplytomeettherequirementsofthelaw,whereasaprivacyimpactassessmentisintendedtoinvestigatefurtherinordertoidentifywaystosafeguardprivacyoptimally.ThisInternationalStandardrecognizesthatthechoicesoffinancialandbankingsystemdevelopmentandriskmanagementproceduresarebusinessdecisionsand,assuch,thebusinessdecisionmakersneedtobeinformedinordertobeabletomakeinformeddecisionsfortheirfinancialinstitutions.ThisInternationalStandardprovidesaprivacyimpactassessmentstructure(commonPIAcomponents,definitionsandinformativeannexes)forinstitutionshandlingfinancialinformationthatwishtouseaprivacyimpactassessmentasatooltoplanfor,andmanage,privacyissueswithinbusinesssystemsthattheyconsidertobevulnerable.
【中国标准分类号】:A11
【国际标准分类号】:03_060
【页数】:28P.;A4
【正文语种】:英语


【英文标准名称】:Informationtechnology-Securitytechniques-EvaluationcriteriaforITsecurity-Securityfunctionalrequirements
【原文标准名称】:信息技术.安全技术.IT安全评价准则.安全功能要求
【标准号】:BSISO/IEC15408-2-1999
【标准状态】:作废
【国别】:英国
【发布日期】:2000-02-15
【实施或试行日期】:2000-02-15
【发布单位】:英国标准学会(GB-BSI)
【起草单位】:BSI
【标准类型】:()
【标准水平】:()
【中文主题词】:数据安全;数据处理;分类系统;数据分析;数据管理;政策;质量保证;识别方法;密码;数据组织;通路;数据传送;键(密码);信息交流;数据存储保护;一致性
【英文主题词】:safetyrequirements;definitions;informationexchange;reliability;datasecurity;definition;informationtechnology;dataprotection;datatransmission;dataprocessing;safety;informationinterchange;specification(approval)
【摘要】:
【中国标准分类号】:L70
【国际标准分类号】:35_040
【页数】:356P.;A4
【正文语种】:英语