Abstract
Personal Information protect act announced in 2005. Many organizations learn how to respond to security incidents only after suffering attacks. By this time, incidents often become much more costly. How prepared your company to security incidents? This document described about security standard, information security management system(ISMS) and IBM guidelines about information security. This document will provide you with a recommended process and procedures about security risks.