Analysis of Information Security through Asset Management in Academic Institutes of Pakistan

被引:0
|
作者
Mumtaz, Nadia [1 ]
机构
[1] Punjab Univ, Dept Informat Technol, Jhelum, Pakistan
关键词
asset management; information security policy; ISMS; ISO; 27001; best practices of ISO 27001 for academic institutes;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Assets are the resources used by the organization and play central role to meet the organizational objectives. The most critical asset of an organization is information which can be of any type i.e. electronic or in hard form. Different assets like backup drives, office files in either soft or hard form, networking devices etc. have large amount of information that needs to be protected from unauthorized access. Asset management is the methodical process of maintaining, upgrading and operating the assets. It has great significance to the business community as the value of assets is their influence on accomplishing the predefined organizational objectives. In academic institutes, information asset is used in teaching, research, administration and management, so all the assets containing useful information must be properly managed so that it remains available to the users. Unfortunately information security cannot be guaranteed100% by any mean or method. Therefore there is a need for standards to ensure best security practices to provide adequate level of security. ISO 27001 is one such standard, whose basic objective is to provide requirements for establishing, implementing, maintaining and continuously improving an Information Security Management System (ISMS). ISO 27001 provide complete guidance to the organization about asset management.
引用
收藏
页数:4
相关论文
共 50 条
  • [1] Information Security Management in Academic Institutes of Pakistan
    Rehman, Huma
    Masood, Ashraf
    Cheema, Ahmad Raza
    [J]. 2013 2ND NATIONAL CONFERENCE ON INFORMATION ASSURANCE (NCIA), 2013, : 47 - 51
  • [2] A Study on the Improvements of Information Security Management System for Environment Education Institutes
    Jeong, Chulki
    Ahn, Sungjin
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (04): : 247 - 252
  • [3] Academic Management through the visualization of information
    Guerra, Laura
    Arciniegas, Stalin
    [J]. 2019 14TH IBERIAN CONFERENCE ON INFORMATION SYSTEMS AND TECHNOLOGIES (CISTI), 2019,
  • [4] Framework to implement information security management systems: An asset to project management processes
    Mena, Alvaro
    [J]. 2018 37TH INTERNATIONAL CONFERENCE OF THE CHILEAN COMPUTER SCIENCE SOCIETY (SCCC), 2018,
  • [5] Information security management through measurement
    Von Solms, E
    Von Solms, SH
    [J]. INFORMATION SECURITY FOR GLOBAL INFORMATION INFRASTRUCTURES, 2000, 47 : 59 - 68
  • [6] Security through Information Risk Management
    Johnson, M. Eric
    Goetz, Eric
    Pfleeger, Shari Lawrence
    [J]. IEEE SECURITY & PRIVACY, 2009, 7 (03) : 45 - 52
  • [7] BIM business value for asset owners through effective asset information management
    Munir, Mustapha
    Kiviniemi, Arto
    Finnegan, Stephen
    Jones, Stephen W.
    [J]. FACILITIES, 2020, 38 (3/4) : 181 - 200
  • [8] Mapping digital information security management in the university libraries of Pakistan
    Aslam, Maria
    Khalid, Ayesha
    Batool, Syeda Hina
    Farid, Ghulam
    [J]. Proceedings of the Association for Information Science and Technology, 2019, 56 (01): : 356 - 359
  • [9] INFORMATION ASSET MANAGEMENT
    APPLETON, DS
    [J]. DATAMATION, 1986, 32 (03): : 71 - &
  • [10] SAVIOR Security Analytics on Asset Vulnerability for Information Abstraction and Risk Analysis
    Flanagan, Kieran
    Fallon, Enda
    Awad, Abir
    Connolly, Paul
    [J]. 2016 UKSIM-AMSS 18TH INTERNATIONAL CONFERENCE ON COMPUTER MODELLING AND SIMULATION (UKSIM), 2016, : 9 - 15