AS/NZS ISO/IEC/IEEE 23026:2025 identically adopts ISO/IEC IEEE 23026:2023, which defines system engineering and management requirements for the life cycle of websites, including strategy, design, engineering, testing and validation, and management and sustainment for intranet and extranet environments
Table of contents
Header
About this publication
Preface
Foreword
Introduction
1 Scope
2 Normative references
3 Terms, definitions and abbreviated terms
3.1 Terms and definitions
3.2 Abbreviated terms
4 Planning websites
4.1 Defining the purpose, users, and context of the website
4.2 Establishing the informational website design and sustainment strategies
4.2.1 General
4.2.2 Website plan
4.2.3 Website maintenance planning
4.2.4 Website maintenance procedures
4.3 Establishing the privacy and security strategy
5 Designing and engineering websites
5.1 Design goals and website requirements
5.2 Design principles
5.3 Choice of devices and media
5.4 Engineering for website security
5.4.1 General
5.4.2 Website operational security procedures
5.4.3 Website security reviews and audits
5.5 Engineering for performance, scalability, and sustainability
5.5.1 General
5.5.2 Selecting technical formats and standards to use for the website
5.5.2.1 General
5.5.2.2 HTML versions
5.5.2.3 Cascading style sheets
5.5.3 Bandwidth efficiencies
5.5.4 Document type declaration
5.5.5 Description metatag
5.5.6 XML considerations
5.5.7 Image formats, image compression and video
5.5.8 Server technology independence
5.5.9 Designing for performance and scale
5.5.9.1 Scripting and executable considerations
5.5.9.2 Server and client-side executable code
5.5.9.3 Database management system considerations
6 Testing and evaluating websites
6.1 Test planning
6.2 Testing for usability
6.2.1 General
6.2.2 Validation of markup language and accessibility conformance
6.2.3 Operational validation
6.2.4 Active links
6.2.5 Dead links
6.3 Testing for performance and resilience
6.4 Testing for security
7 Managing the website
7.1 Website roles and responsibilities
7.2 Control of information content
7.3 Managing security
8 Sustaining the website
8.1 General
8.2 Continuous delivery, content validation, and versioning