首页    期刊浏览 2024年09月12日 星期四
登录注册

文章基本信息

  • 标题:Assessment Framework for Defining the Maturity of Information Technology within Enterprise Risk Management (ERM)
  • 本地全文:下载
  • 作者:Rokhman Fauzi ; Muharman Lubis
  • 期刊名称:International Journal of Advanced Computer Science and Applications(IJACSA)
  • 印刷版ISSN:2158-107X
  • 电子版ISSN:2156-5570
  • 出版年度:2021
  • 卷号:12
  • 期号:10
  • DOI:10.14569/IJACSA.2021.0121075
  • 语种:English
  • 出版社:Science and Information Society (SAI)
  • 摘要:The process of reviewing, assessing and improving the organization's IT risk management requires some basic information summarized in a process maturity profile. In general, IT risk management standards or frameworks do not include a mechanism for assessing the maturity level of process implementations. This study was conducted to develop a framework, which can be applied to assess the maturity level of IT risk management under ISO / IEC 27005. A standards-based management system implementation can be represented as a model cycle of planning, implementation, validation and also action plan. The proposed evaluation framework consists of templates, methods, and working papers. Therefore, the template focus on the evaluation areas, which are planning, execution, validation, and execution, then evaluation area details (8 domains, 35 subdomains, 82 items), and evaluation metrics and criteria. Meanwhile, a working paper has been created to assist in conducting the evaluation. Actually, by using this evaluation framework, it can provide a representation of the maturity level from the entire process in managing IT risk, based on the provisions of ISO/IEC 27005. This framework complements the existing model with the representation of (1) providing a single-cycle planning, establishment, validation, and execution, (2) evaluation tools, (3) more comprehensive data collection methods, and (4) priority list of elements to be reformed and/or improved.
  • 关键词:Risk management; assessment framework; maturity level; PDCA cycles; ISO/IEC 27005
国家哲学社会科学文献中心版权所有