參考文獻
[1] GB/T 19000-2000 質量管理體系 基礎和術語
[2] GB/T 19001-2000 質量管理體系 要求
[3] GB/T 19004-2000 質量管理體系 業績改進指南
[4] System Security Engineering Capability Maturity Model (SSE-CMM?) Model Descritpion Document, Version 3.0, June 15, 2003
[5] System Security Engineering Capability Maturity Model (SSE-CMM?) Appraisal Method, Version 2.0, April 16, 1999
[6] NIST Special Publication 800-18, Guide for Developing Security Plans for Information Technology Systems, November 2001
[7] NIST Special Publication 800-30 Risk Management Guide for Information Technology Systems, January 2002
[8] NIST Special Publication 800-34 Continuity Planning Guide for Information Technology System, June 2002
[9] NIST Special Publication 800-50, Building an Information Security Awareness and Training Program, October 2003
[10] NIST Special Publication 800-64, Security Considerations in the Information System Development Life Cycle, October 2003
[11] NIST Special Publication 800-53, Recommended Security Controls for Federal Information Systems, Feberuary 2005
[12] NSTISSI No. 4009 National Information Systems Security (INFOSEC) Glossary
[21] Carnegie Mellon University/Software Engineering Institute, CMU/SEI-2002-TR-011, CMMISM for Systems Engineering, Software Engineering, Integrated Product and Process Development, and Supplier Sourcing(CMMI-SE/SW/IPPD/SS, V1.1) Continuous Representation, CMMI Product Team, March 2002
[13] Carnegie Mellon University/Software Engineering Institute, CMU/SEI-2002-TR-012, CMMISM for Systems Engineering, Software Engineering, Integrated Product and Process Development, and Supplier Sourcing(CMMI-SE/SW/IPPD/SS, V1.1) Staged Representation, CMMI Product Team, March 2002
[14] Information Assurance Technical Framework, Release 3.1, National Security Agency Information Assurance Solutions Technical, September 2002
[15] CoBIT?, 3rd Edition, Management Guidelines, COBIT Steering Committee and the IT Governance Institute?,July 2000
[16] CoBIT?, 3rd Edition, Audit Guidelines, COBIT Steering Committee and the IT Governance Institute?,July 2000
[17] CoBIT?, 3rd Edition, Control Objectives, COBIT Steering Committee and the IT Governance Institute?,July 2000
推薦文章: