首页    期刊浏览 2024年11月28日 星期四
登录注册

文章基本信息

  • 标题:Towards a Framework for Strategic Security Context in Information Security Governance
  • 作者:Maynard, Sean ; Tan, Terrence ; Ahmad, Atif
  • 期刊名称:Pacific Asia Journal of the Association for Information Systems
  • 印刷版ISSN:1943-7544
  • 出版年度:2018
  • 卷号:10
  • 期号:4
  • 页码:4
  • 出版社:Association for Information Systems
  • 摘要:Information security governance influences the quality of strategic decision-making to ensure that investments in security are effective. Security governance involves a range of activities including adjusting organisational structures, designating roles and responsibilities, allocating resources, managing risks, measuring results, and gauging the adequacy of audits and reviews. We identified three security issues in an organisation around strategic context in an in-depth and revelatory case study. These are (1) limited diversity in decision-making; (2) lack of guidance in corporate-level mission statements to security decision-makers; (3) a bottom-up approach to security strategic context development. We further argue that instead of an approach that is based on risk and controls, organisations should address objectives and strategies through developing depth in their security strategic context. Available at: https://journal.ecrc.nsysu.edu.tw/index.php/pajais/article/view/491
  • 关键词:Security Culture; Decentralized Decision Making; Security Strategic Context; Business Security Strategies; Information Security Governance
Loading...
联系我们|关于我们|网站声明
国家哲学社会科学文献中心版权所有