Visualization of information security management processes

被引:0
|
作者
Miloslavskaya N.G. [1 ]
Tolstoy A.I. [1 ]
机构
[1] National Research Nuclear University, MEPhI (Moscow Engineering Physics Institute)
来源
| 1600年 / National Research Nuclear University卷 / 09期
关键词
Information infrastructure; Information security; Information security maintenance system; Information security management; Management processes; Management system; Visualization of information;
D O I
10.26583/sv.9.5.10
中图分类号
学科分类号
摘要
The article substantiates the need to visualize information about the information security (IS) management processes that help to make informed decisions about their timely adjustment to improve the security of these objects. The structure of the processes of the IS maintenance system (ISMaS) is presented. The main processes of IS management – planning, implementation, control and improvement – are described and their connections with other IS processes are shown. Information on the IS management processes, where its visualization is particularly useful, is determined. The example of the "ISMaS Planning as a single process" process presents visualization of information of all its subprocesses, namely "Object description", "Assets identification", "IS threat analysis", "Selection of IS threats", "IS threat description", "IS risk management", "IS Policy development" and "Internal IS documents development". Two directions of the further research are specified in the conclusion.
引用
收藏
页码:117 / 136
页数:19
相关论文
共 50 条
  • [1] Management of Security Processes in Information Technologies
    Djokovic, Goran
    Pavicevic, Aleksandra
    Vucinic, Dragan
    Vanka, Gajo M.
    IPSI BGD TRANSACTIONS ON INTERNET RESEARCH, 2021, 17 (01): : 53 - 58
  • [2] Information visualization in information security management for enterprise's information infrastructure
    Miloslavskaya, N.
    Tolstoy, A.
    Birjukov, A.
    Scientific Visualization, 2014, 6 (02): : 74 - 91
  • [3] Analytical Visualization Techniques for Security Information and Event Management
    Novikova, Evgenia
    Kotenko, Igor
    PROCEEDINGS OF THE 2013 21ST EUROMICRO INTERNATIONAL CONFERENCE ON PARALLEL, DISTRIBUTED, AND NETWORK-BASED PROCESSING, 2013, : 519 - 525
  • [4] Information Security in Intelligent Data Management Processes
    Ogiela, Lidia
    Ogiela, Urszula
    2015 10TH INTERNATIONAL CONFERENCE ON BROADBAND AND WIRELESS COMPUTING, COMMUNICATION AND APPLICATIONS (BWCCA 2015), 2015, : 169 - 172
  • [5] Information security management system: Processes and products
    Eloff, MM
    Eloff, JHP
    SECURITY AND PRIVACY IN THE AGE OF UNCERTAINTY, 2003, 122 : 193 - 204
  • [6] Visualization in Information Security
    Schweitzer, Dino
    Fulton, Steven
    PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON INFORMATION WARFARE AND SECURITY, 2012, : 288 - 296
  • [7] Evaluation of Security Information and Event Management Systems for Custom Security Visualization Generation
    Sonmez, Ferda Ozdemir
    Gunel, Banu
    2018 INTERNATIONAL CONGRESS ON BIG DATA, DEEP LEARNING AND FIGHTING CYBER TERRORISM (IBIGDELFT), 2018, : 38 - 44
  • [8] BUSINESS PROCESSES MANAGEMENT AS SUPPORT TOOL IN THE INFORMATION SECURITY MANAGEMENT
    Della Flora, Fernando
    Tolfo, Cristiano
    REVISTA GEINTEC-GESTAO INOVACAO E TECNOLOGIAS, 2016, 6 (01): : 2756 - 2770
  • [9] A Review on Information, Information Security and Security Processes
    Canbek, Gurol
    Sagiroglu, Seref
    JOURNAL OF POLYTECHNIC-POLITEKNIK DERGISI, 2006, 9 (03): : 165 - 174
  • [10] Framework to implement information security management systems: An asset to project management processes
    Mena, Alvaro
    2018 37TH INTERNATIONAL CONFERENCE OF THE CHILEAN COMPUTER SCIENCE SOCIETY (SCCC), 2018,