Customers: Tupolev of public joint stock company
Contractors: Informzashita Product: Projects of external audit of IT and security (in tch PCI DSS and SUIB)Project date: 2014/09 - 2015/01
|
On March 12, 2015 it became known of end of a complex information security audit in JSC Tupolev. Preparation of the enterprise for certification on compliance to the ISO/IEC 27001:2006 standard was carried out by Informzashita company.
Project Progress
Experts of Informzashita conducted complete examination of information systems of the customer, the systems of providing and management processes of cybersecurity. During the project critical business processes of the enterprise are revealed and the detailed plan of actions is developed for successful certification. Considering that the standard includes requirements for the address with risks of information security in relation to requirements of the organization, experts developed for JSC Tupolev the development strategy cybersecurity up to the 2018th year.
Building of JSC Tupolev, 2012
Project Results
"Working on the project, we considered the existing internal standards of JSC Tupolev, including documentation of the implemented and executed quality management system, – Alexander Baryshnikov, the head of department of consulting of Informzashita company noted. – At all stages of audit we closely interacted not only with divisions of cybersecurity, but also with many other interested inner patterns of Tupolev for obtaining the objective information. Such cooperation allowed us to estimate most objectively degree of compliance of the current management system of cybersecurity to the standard of security ISO/IEC 27001".