ISO/IEC TS 27100 - Information technology -- Cybersecurity -- Overview and concepts
Comment: Associated to QU4LITY Reference Architecture: Distributed Trustworthiness Layer
Details: Cybersecurity (basis standard, inkl. terms and concepts relating to cyber security and cyber risk management)
Production Performance Management Protocol (PPMP) - Production Performance Management Protocol Specification
Comment: Associated to QU4LITY Reference Architecture: …
Details: Applied to address performance analysisi and porcess optimisazion (i.e. allows to capture data that is required to do performance analysis of production facilities)
Comment: Associated to EPFP Reference Architecture: Risk Management
Details: Although a working group has been setup by the German Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik (BSI) to focus on the Risk Management topic but there is no current activity in this area. This represents an opportunity for EFPF (particularly the partners involved in the development of Risk Management Tool in T4.4) to support and collaborate with BSI towards the development of standards in this area. One area of interest for eFactory will be to facilitate the exchange of knowledge between BSI and NISTs Risk Management Framework.
ISO/IEC 27017:2015 - Information technology — Security techniques — Code of practice for information security controls based on ISO/IEC 27002 for cloud services
Comment: Associated to EPFP Reference Architecture: Cybersecurity
Details: Information Security standards for the design of security controls (T6.2) in EFPF. Interested to contribute to any of cloud security standards, e.g. ISO/IEC 27017:2015.
ISO/IEC 38500:2015 - Information technology -- Governance of IT for the organization
Comment: Associated to EPFP Reference Architecture: IoT Technologies
Details: Implementation of the ISO/IEC 38500 to assure that the data accountability map and associated matrix of considerations from ISO/IEC 38505-1 are fully adopted in EFPF. The data governing principles in EFPF are implemented according to the IT governance methods presented in these standards.
ISO/IEC 38505-1:2017 - Information technology -- Governance of IT -- Governance of data -- Part 1: Application of ISO/IEC 38500 to the governance of data
Comment: _
ISO/IEC TS 27100 - Information technology -- Cybersecurity -- Overview and concepts
Comment: _
ISO/IEC TS 33052:2016 - Information technology -Process reference model (PRM) for information security management
Comment: Associated to EPFP Reference Architecture: Business Workflows
Details: Adoption of BPMN 2.0 as the modelling notation for workflows. Monitoring the BPMN 2.0 standard with the aim to adapt their developments in alignment with the standard
Comment: Associated to ZDMP Reference Architecture: Security designer
Details: Information Security
ISO/IEC 27017:2015 - Information technology — Security techniques — Code of practice for information security controls based on ISO/IEC 27002 for cloud services
Comment: Associated to ZDMP Reference Architecture: none
Details: Information Security
ISO/IEC TS 33052:2016 - Information technology -Process reference model (PRM) for information security management
Comment: Associated to ZDMP Reference Architecture: none
Details: Information Management; Information Secutity
ISO/IEC 27017:2015 - Information technology — Security techniques — Code of practice for information security controls based on ISO/IEC 27002 for cloud services
ISO/IEC 38500:2015 - Information technology -- Governance of IT for the organization
ISO/IEC 38505-1:2017 - Information technology -- Governance of IT -- Governance of data -- Part 1: Application of ISO/IEC 38500 to the governance of data
ISO/IEC TS 33052:2016 - Information technology -Process reference model (PRM) for information security management
Details: Cybersecurity (basis standard, inkl. terms and concepts relating to cyber security and cyber risk management)