A simple but incomplete listing of the general types or categories of laws,
regulations and contracts/agreements that have some relevance to information
security and ISO27001.
·
Banking & finance
·
Business continuity, critical national infrastructure.
·
Commercial contracts & agreements
·
Corporate governance, obligations on its Officers,
independent oversight/audits, company structure.
·
Cryptography – standards, laws and regs
·
Defamation, libel, slander
·
Employment
·
Environmental
·
Ethics, morals, cultural and religious aspects
·
Fraud, identity theft, misrepresentation, embezzlement
·
Freedom of information – enforced disclosure
·
Hacking, malware, denial of service, unauthorized
access to information systems and networks
·
Health and safety
·
Insurance and risk
·
Intellectual property rights - Copyright, trademarks,
patents, DMCA, trade secrets
·
Military/governmental stuff: spying, official secrets
& classification, terrorism, organized crime …
·
Permits and licenses to operate.
· Porn, paedophilia, discriminatory/offensive materials, threatening behaviour, coercion
· Privacy, data protection, personally identifiable information
· Technical standards and interoperability
· Wiretapping, surveillance, CCTV, monitoring, investigation, forensic
User questions & answers