Abstract
With the development of science and technology, when we appreciated them brought those convenience and benefits into our world. meanwhile, we have no choice but to review any possibilities of risk and threaten could be behind. Especially, more and more technologies application involve in our operations rapidly, the topic of Information security management are consider significant subject around the regions of the global. ISMS (Information Security Management System), as well as one of management system, the main purposes of implement ISMS, which is intent to protect enterprise information assets, ensure their information systems could be operated more efficiently and safely. BS7799 is an international standard for information security management, which is recognized by worldwide. This research is base on BS7799 standard to review those enterprise that located in Taiwan area. Through the questionnaire feedback by organization’s employee, to measure and evaluate those enterprise their current ISMS implementation situation and the concept of their employee. Meanwhile, keep those data as benchmark for review individual enterprise. The research is also conducted through an individual case, measure the data that collect from individual case to analyse the existing gap and main barrier during implementation stage. As the result discovered, the top management should take the responsibility and own the proper concept to confirm the policy, operation procedure of ISMS for their organization, conducted by training course and follow schedule to forward the goal. Realized the exact demand, emphasized in practices and continue to improve are the key successful factors for ISMS implementation.