The International Organization for Standardization (ISO) is an international organzation that defines what the standards of practice are for various pprofessions including network security. The ISO creates a foundation for various professionals to know what is standard practice and ensure they are acting in a legal and ethical manner. The ISO provides a standard for which the governance must live by in order to operating in an ethical and appropriate manner. The ISo provided a guide to what network security is and how it must be implemented effectively. In the field of network security, the ISO has seven parts that include network security overview and concepts, guidelines for the design and implementation of network security, reference network scenarios such as threats and control issues, securing communications between netwrok using security gateways, securing communication across netwrks using VPNs, securing wireless IP network access, and guideline for network virtualization security (ISO, 2020). Each ISO for network security assist network security professionals and organizations to know they are complying and operating to the industry standards across the world. The ISO also allow these same individuals to see if there are inefficiencies or inappropriate business processes that are not effective and need to be modified to adhere to the ISOs.
Reference
ISO (2020). ISO/IEC 27033 IT network security standard. Retrieved from Iso27001security.com.
Pearlson, K., Saunders, C.S., Gallenta, D. (2019). Managing and Unsing Information Systems: A Strategic Approach (7th Ed.). John WIley & Sons.