This British Standard gives recommendations for information security management. It is intended to provide a common basis for organizations to develop, implement and measure effective security management practice and to provide confidence in interorganizational dealings.