|
An Introduction To |
|
Electronic commerce servicesObjective: To ensure the security of electronic commerce services and their secure use. The organisation must consider the security implications of electronic services including on line transactions and their security requirements. Publicly available systems should also be evaluated. Electronic commerceElectronic commerce information passing over public networks should be protected against unauthorised modification, erasure, disclosure or any other security breach including contractual ones. On-line transactionsOn-line transaction information should be protected against unauthorised disclosure, erasure, modification, duplication or replay. Publicly available systemsThere should be a formal authorisation process used to authorise information being made public to ensure that the information meets legal requirements and is of known integrity. |
The Security Practitioner An Introduction to Information Security |