avatar

The Irrational Security Monologue

  Published by: Joffy, Category: Information Security, Views: 782, Date: 2014-04-04

ISM2014 February Release

Good news, after a complete rebuild of the XML schema used to store the ISM for the ISM2014-Draft I have now completed doing the back conversion of the released PDF version to XML.

Updates include brand new diagrams (specifically related to Cross Domain Solutions) a whole bunch of revisions to existing guidance, here's some stats:

The new XML format is very accommodating for the data within the ISM, here's the top of the XML file:

<detail>
    <title>Australian Government Information Security Manual</title>
    <name>AusGov. ISM2014-02 (Feburary)</name>
    <prefix>AusGov-ISM</prefix> <!--  PREFIX is Important - do not change between versions -->
    <release>g</release>
    <blame>This XML version was created by James Mouat [at] Ionize from 'Information_Security_Manual_2014_Controls.pdf'.</blame>
    <notes>Embedded images are either: exported from ISM2012/ISM2013/2014 PDF as PPM OR zoomed to 200%, screen-shot and cropped. All images are colour palate optimised, compressed and exported as base64 for an average 65% reduction in image size. I hope you find it useful, please enjoy.</notes>
</detail>
<framework>
<title>Australian Government Information Security Manual</title>
<part>
    <title>About Information Security</title>
    <image>BASE64ENCODED</image>
    <chapter>
        <title>Using This Manual</title>
        <section>
            <objective>The Australian Government Information Security Manual (ISM) is used for the risk-based application of information security to information and systems.</objective>
            <scope>This section describes how to interpret the content and layout of this manual.</scope>
            <context>
                <topic>
                    <title>The Australian Signals Directorate</title>
                    <para>Under the Defence White Paper 2013, the Defence Signals Directorate (DSD) was renamed the Australian Signals Directorate (ASD). For legal and policy purposes, all references to ASD should be taken to be references to DSD.</para>
                </topic>
                <topic>
                    <title>Purpose of the Australian Government Information Security Manual</title>
                    <para>The purpose of this manual is to assist Australian government agencies in applying a risk-based approach to protecting their information and systems. While there are other standards and guidelines designed to protect information and systems, the advice in this manual is specifically based on the ASD's experience in providing cyber and information security advice and assistance to the Australian government.  The controls are therefore designed to mitigate the most likely threats to Australian government agencies.</para>
                </topic>
            </context>
        </section>
    </chapter>
</part>
</framework>

Looking good and keen to get moving on more formats and the mobile app.


← Back to Blog Home