참고문헌
- BS 10012:2009, Data protection -Specification for a personal information management system, BSI, 2009
- KCS.KO-12.0001, 개인정보보호관리체계(PIMS), 2011
- 법제처, 개인정보보호법
- 법제처, 정보통신망이용촉진 및 정보보호 등에 관한 법
- ISO/IEC 27000:2014, Information security management systems - Overview and vocabulary
- ISO/IEC 27001:2013, Information technology - Security techniques - Information security management systems - Requirements
- ISO/IEC 27002:2013, Information technology - Security techniques - Requirements for bodies providing audit and certification of information security management system
- ISO/IEC 27005:2011, Information security risk management
- ISO/IEC 27009: 2016, Information technology - Security techniques - Sector specific application of ISO/IEC 27001 - Requirements
- ISO/IEC 27011, Information security management guidelines for telecommunications organizations based on ISO/IEC 27002
- ISO/IEC 27017:2016, Code of practice for information security controls based on ISO/IEC 27002 for cloud services
- ISO/IEC FDIS 27018:2014, Code of practice for protection of personally identifiable information (PII) in public clouds acting as PIII processors
- ISO/IEC 29100:2011, Information technology - Security techniques - Privacy framework
- ISO/IEC 29190, Information technology - Security techniques - Information technology -- Security techniques -- Privacy capability assessment model
- ISO/IEC DIS 29134, Privacy Impact Assessment - Methodology, 2014.5
- ISO/IEC DIS 29151, Code of practice for the protection of personally identifiable information, 2014.4
- WG 5/SD 5, Explanation on the use of ISO/IEC 27001 (ISMS) for privacy management, 2015.8
- ISO/IEC JTC 1/SC 27 IT Security techniques, http://www.iso.org/iso/iso_technical_committee?commid=45306
- WG 5/SD 1, WG 5 Roadmap, 2016.4
- 염흥열, "개인정보보호 관리체계 국제 표준화 필요성," 정보보호학회지, 제23권 제4호, pp.65-72, 2013.8
- 염흥열, "개인정보보호 기술 및 국제표준 동향," OSIA Standards & Technology Review Journal * June 2014, Vol.27, No.2
- 염흥열, 개인정보보호 국제표준화 분석, 한국정보보호학회 학회지, 제25권 제4호, pp.5-9, 2015.8
- WG5 N390, Enhancement to ISO/IEC 27001 for privacy management - Requirements, ISO/IEC SC 27/WG 5, 2016.4.
- ISO/IEC 20889, Information technology - Security techniques - Privacy enhancing data de-identification techniques