Skip to main content
Back

ISO/IEC 27036-2:2014

Information technology -- Security techniques -- Information security for supplier relationships -- Part 2: Requirements

General information

Withdrawn from 15.06.2022
Directives or regulations
None

Standard history

Status
Date
Type
Name
15.06.2022
Main
25.07.2014
Main
ISO/IEC 27036-2:2014 specifies fundamental information security requirements for defining, implementing, operating, monitoring, reviewing, maintaining and improving supplier and acquirer relationships.
These requirements cover any procurement and supply of products and services, such as manufacturing or assembly, business process procurement, software and hardware components, knowledge process procurement, Build-Operate-Transfer and cloud computing services.
These requirements are intended to be applicable to all organizations, regardless of type, size and nature.
To meet these requirements, an organization should have already internally implemented a number of foundational processes, or be actively planning to do so. These processes include, but are not limited to, the following: governance, business management, risk management, operational and human resources management, and information security.

Required fields are indicated with *

*
*
*
PDF
82.61 € incl tax
Paper
82.61 € incl tax
Standard monitoring

Customers who bought this item also bought

Main

ISO/IEC 27018:2014

Information technology -- Security techniques -- Code of practice for protection of personally identifiable information (PII) in public clouds acting as PII processors
Withdrawn from 15.01.2019
Main

ISO 22315:2014

Societal security -- Mass evacuation -- Guidelines for planning
Newest version Valid from 03.12.2014
Main

ISO 22322:2015

Societal security -- Emergency management -- Guidelines for public warning
Withdrawn from 14.12.2022
Main

ISO 22324:2015

Societal security -- Emergency management -- Guidelines for colour-coded alerts
Withdrawn from 13.12.2022