Business process re-engineering and information security planning: Opportunities for integration

被引:0
|
作者
El-Gayar, OF [1 ]
Fritz, BD [1 ]
机构
[1] Dakota State Univ, Coll Business & Informat Syst, Madison, SD 57042 USA
关键词
security management; security planning; security processes; business process reengineering; socio-technical modeling;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Business process re-engineering (BPR) has come to recognize a need for the adoption of socio-technical methodologies and capabilities for knowledge representation of qualitative concerns. Security planning and decision-making has a similar need, and furthermore socio-technical methods common to BPR can be usefully applied in this capacity. The introduction of security models like Defense-in-Depth and similar efforts to recognize the organizational impact of security planning in operational security management serve as an initial step in educating security personnel and provide a more comprehensive view, but unfortunately, security decision-making has traditionally relied almost solely upon quantitative risk assessment, cost/benefit mechanisms, and related, functionalistic methodologies. This greatly limits the representational capacity of the decision process, and with it the possible dimensions of analysis in which to consider security issues. Within this paper, we briefly examine security planning and the relevant techniques of BPR and Socio-technical design, and present a framework for their integration within the context of information security. It is our contention that such methodologies can be utilized in the security decision process to facilitate representation of subjective concerns and broadly-defined issues germane to security policy, within an organizational context.
引用
收藏
页码:31 / 36
页数:6
相关论文
共 50 条
  • [31] Exploration methods in business process re-engineering
    Rajala, M
    Savolainen, T
    Jagdev, H
    COMPUTERS IN INDUSTRY, 1997, 33 (2-3) : 367 - 385
  • [32] AN INTEGRATED MODEL FOR BUSINESS PROCESS RE-ENGINEERING
    Lee, Ya-Ching
    Chu, Pin-Yu
    Tseng, Hsien-Lee
    PROCEEDINGS OF THE 2ND INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER THEORY AND ENGINEERING (ICACTE 2009), VOLS 1 AND 2, 2009, : 1759 - 1766
  • [33] Exploring the role of information system functions and the success of business process re-engineering
    Lai, VS
    Mahapatra, R
    ASSOCIATION FOR INFORMATION SYSTEMS PROCEEDING OF THE AMERICAS CONFERENCE ON INFORMATION SYSTEMS, 1997, : 661 - 663
  • [34] The study on the relationship between Business Process Re-engineering and Enterprise Information System
    Jian, Z
    Qun, Z
    98 INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE & ENGINEERING, PROCEEDINGS, 1998, : 629 - 632
  • [35] Information modeling and re-engineering for design process
    Wang, Yu
    Xing, Yuan
    Ruan, Xue-Yu
    Jisuanji Jicheng Zhizao Xitong/Computer Integrated Manufacturing Systems, CIMS, 2002, 8 (02): : 111 - 114
  • [36] The application of business process re-engineering in Chinese enterprises
    刘全顺
    刘利军
    关小吉
    International Journal of Coal Science & Technology, 2002, (02) : 107 - 112
  • [37] The role of SAP software in business process re-engineering
    Soliman, F
    Youssef, MA
    INTERNATIONAL JOURNAL OF OPERATIONS & PRODUCTION MANAGEMENT, 1998, 18 (9-10) : 886 - +
  • [38] The effect of organizational memory in business process re-engineering
    Li, CH
    Zhang, L
    Mei, XH
    PROCEEDINGS OF 2003 INTERNATIONAL CONFERENCE ON MANAGEMENT SCIENCE & ENGINEERING, VOLS I AND II, 2003, : 952 - 956
  • [39] Business process re-engineering: lessons from the past
    Drago, W
    Geisler, E
    INDUSTRIAL MANAGEMENT & DATA SYSTEMS, 1997, 97 (7-8) : 297 - +
  • [40] System theory guides business process re-engineering
    Jin, ML
    Li, F
    PROCEEDINGS OF THE 2001 INTERNATIONAL CONFERNECE ON MANAGEMENT SCIENCE & ENGINEERING, 2001, : 659 - 663