La norme ISO/IEC 27005
IntermediatePolicyFoundationsCareer

La norme ISO/IEC 27005

Maîtriser la gestion des risques en sécurité de l'information · 2nd edition

4 / 5

A three-part guide to the ISO/IEC 27005:2022 standard, running from information-security governance foundations to the detail of every risk-management process, with fictional case studies to practice against.

Buy on Amazon

As an Amazon Associate we earn from qualifying purchases. The link above is sponsored.

Published
2025
Publisher
Éditions ENI
Pages
296
Edition
2nd edition
Language
French

Read this if

Project managers, systems and network administrators, CISOs, CIOs, and anyone involved in information-security risk management who needs a pedagogical reference on the ISO/IEC 27005:2022 standard.

Skip this if

Readers looking for direct offensive or defensive technique; this book is about risk-management governance and methodology, not attacking or defending a system.

Key takeaways

  • No risk-management or ISO-compliance book existed in this catalog until now, filling a real gap for CISO and governance-track careers.
  • The second edition follows the current ISO/IEC 27005:2022 standard, not an outdated version.
  • Fictional case studies let readers apply each process concretely rather than staying at the theoretical level.

Notes

A governance complement to the catalog's more technical titles: pairs with Threat Modeling for the risk-focused design-side approach, and with Sécurité informatique - Ethical Hacking (ACISSI) for the offensive perspective this book deliberately doesn't cover.