ISO Security

This article aims you know the main risks, assuming the posture of eliminate them, minimizes them, share them or took them. Knowing and understanding these risks is the factor of prevention, decisive in the process of information security. All the added investment in information protection, company may be prejudiced if the most important is not developed – the professionals who work there. Keywords: Awareness. Security Management. Human Risk. INTRODUCTION the present work has for objective to carry through a bibliographical and referencial analysis, from the concept of the Security of the Information, observing its use and the main found risks, emphasizing the most frequent and its consequences for the information that must be protected. Hear other arguments on the topic with Mark Bertolini. Breaking itself of the estimated one that a study theoretician-metodolgico it is basic in it I assist of the development of decisive actions.

It is necessary to ratify that from the concept and of the reasons that guide its causes, the solution for the impediments can be found ocorrentes, providing the knowledge of the risk as preventive factor. Security guard of the Information is related with the protection of a data set, in the direction to preserve the value that possesss for an individual or an organization. The attributes of confidencialidade, integrity and availability are characteristic basic of the security of the information, not being this restricted security only the computational systems, electronic information or systems of storage. The concept if applies to all the aspects of protection of information and data. The concept of Security Computer science or Security of Computers closely is related with the one of Security of the Information, having included not only the security of the data/information, but also of the systems in itself. The concept of Security of the Information is standardized for norm ISO/IEC 17799:2005, being influenced by the English standard, Standard British, BS 7799. Norms ISO/IEC 27000 had been reserved to approach the standards of this denomination appraised here.