Standard ISO/IEC 27001

Hi, is UCS compliant with with the standard ISO/IEC 27001 ? in italy some public government require it.

The international standard ISO/IEC 27001 specifies the requirements for setting up, implementing, maintaining and continuously improving a documented information security management system and NOT characteristics of individual (IT) products such as specific operating systems or software etc. in general.

Compliance with ISO 27001 is therefore not due to the products or components but to management, administration, organization, etc. this is a process issue.

You may be looking for Common Criteria (for Information Technology Security Evaluation), but I hardly believe that UCS would be certified according to it or that there would be a certified version.
Common Criteria is also not uncontroversial, “red tape” with often too little practical use.

HTH Robert

Mastodon