Risk assessment of Information Security Management System inGovernment Organizations in Iran

被引:0
|
作者
Fayez, Samane [1 ]
Nazeri, HodaHosseinZade [1 ]
BagherKiaroodi, Mohammad [1 ]
机构
[1] Islamic Azad Univ, Sci & Res Branch, Dept Publ Adm, Tehran, Iran
关键词
Management System; Information Security; Large Corporations;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Objective: The main objective of this research was to study the risks involved in information security management systems (ISMS) in large corporations. Methodology: Data was collected by a researcher made questionnaire. The reliability of this questionnaire was examined by Cronbach's alpha measured at 0.86. The validity of questionnaire was confirmed by experts in this field. This confirmation proved the face validity and content validity of the questionnaire. Pearson correlation coefficient and two variable regression analysis was used for data analysis. Findings: The findings showed that and risk reduction of ISMS has significant relation with security management system department, human resource development, security management system training, strategies and policies for information security, risk assessment of information processing security, security incident support in large organizations. Conclusions: the important role of information in today's business and the requirement for safeguarding corporate information make it necessary for every organization to undertake the task of designing ISMS that fits its information base in order to safeguard the corporate information assets.
引用
收藏
页码:77 / 79
页数:3
相关论文
共 50 条
  • [1] Information Security Risk Assessment of Commercial Organizations
    Kupriyanov, A. O.
    Babenko, A. A.
    Bakhracheva, Y. S.
    [J]. PHYSICS, TECHNOLOGIES AND INNOVATION (PTI-2019), 2019, 2174
  • [2] Information Security Risk Assessment for the Malaysian Aeronautical Information Management System
    Alwi, Alfian
    Ariffin, Khairul Akram Zainol
    [J]. PROCEEDINGS OF THE 2018 CYBER RESILIENCE CONFERENCE (CRC), 2018,
  • [3] The Validity of Information Security Risk Assessment Methods for Organizations
    Astakhova, L. V.
    [J]. SCIENTIFIC AND TECHNICAL INFORMATION PROCESSING, 2020, 47 (04) : 241 - 247
  • [4] The Validity of Information Security Risk Assessment Methods for Organizations
    L. V. Astakhova
    [J]. Scientific and Technical Information Processing, 2020, 47 : 241 - 247
  • [5] Information security risk assessment model for risk management
    Wawrzyniak, Dariusz
    [J]. TRUST, PRIVACY, AND SECURITY IN DIGITAL BUSINESS, PROCEEDINGS, 2006, 4083 : 21 - 30
  • [6] Value-focused assessment of information system security in organizations
    Dhillon, Gurpreet
    Torkzadeh, Gholamreza
    [J]. INFORMATION SYSTEMS JOURNAL, 2006, 16 (03) : 293 - 314
  • [7] ASPECTS OF INFORMATION SECURITY IN THE MANAGEMENT OF ORGANIZATIONS
    Telespan, Constantin
    [J]. GLOBALIZATION AND INTERCULTURAL DIALOGUE: MULTIDISCIPLINARY PERSPECTIVES - ECONOMY AND MANAGEMENT, 2014, : 784 - 789
  • [8] Improvement of Information System Security Risk Management
    Abbass, Wissam
    Baina, Amine
    Bellafkih, Mostafa
    [J]. 2016 4TH IEEE INTERNATIONAL COLLOQUIUM ON INFORMATION SCIENCE AND TECHNOLOGY (CIST), 2016, : 182 - 187
  • [9] Limitations of the Information Security Management System Assessment Approaches in the Context of Information Security Policy Assessment
    Corpuz, Maria Soto
    [J]. WMSCI 2010: 14TH WORLD MULTI-CONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL IV (POST-CONFERENCE EDITION), 2010, : 148 - 150
  • [10] A Weighted Monte Carlo Simulation Approach to Risk Assessment of Information Security Management System
    Bamakan, Seyed Mojtaba Hosseini
    Dehghanimohammadabadi, Mohammad
    [J]. INTERNATIONAL JOURNAL OF ENTERPRISE INFORMATION SYSTEMS, 2015, 11 (04) : 63 - 78