The security accreditation guide for information systems

Capture d’écran

Newsletter MesServicesCyber. Restez informé des nouveaux guides de l’ANSSI et autres actualités MesServicesCyber. S’abonner


Publié le 26 mars 2026

Présentation

Information systems have become essential to the functioning of public and private entities.

Their misuse can lead to risks which may have catastrophic human, financial, legal, or reputational impacts.

The formal consideration and acceptance of these risks by an authority is referred to as ‘security accreditation’, and in a large number of cases is a regulatory requierement.

With the help of this guide, it seemed important to further understand and detail the process that organisations could follow to accredit their information systems.

This guide is intended for all persons intending to carry out, initiate, or support an accreditation procedure.

Written by ANSSI in collaboration with DINUM, it draws on years of development and support in the field of accreditation, and on the significant feedback provided by experts from the public service and private sectors.

This guide is meant to be accessible in its legibility and applicable to all information systems, from the simplest to the most complex, regardless of their criticality or exposure to sources of risk.

Capture d’écran

Dans la même collection

MesServicesCyber est la plateforme pour faciliter l'accès de tous aux services et ressources de l'ANSSI et de ses partenaires.

Il est développé par l' Agence nationale de la sécurité des systèmes d'information, en lien avec BetaGouv et la Direction interministérielle du numérique.