首页    期刊浏览 2024年11月29日 星期五
登录注册

文章基本信息

  • 标题:ISO 17799: "Best Practices" in Information Security Management?
  • 本地全文:下载
  • 作者:Ma, Qingxiong ; Pearson, J. Michael
  • 期刊名称:Communications of the Association for Information Systems
  • 印刷版ISSN:1529-3181
  • 出版年度:2005
  • 卷号:15
  • 期号:1
  • 页码:32
  • 出版社:Association for Information Systems
  • 摘要:To protect the information assets of organizations, many different standards and guidelines have been proposed. Among them, International standard ISO 17799 is one of the most prominent international efforts on information security. This standard provides both an authoritative statement on information security and the procedures to be adopted by organizations to ensure information security. Security professionals claim ISO 17799 to be a suitable model for information security management and an appropriate vehicle for addressing information security management issues in the modern organization. However, to our knowledge, no empirical studies have been conducted to validate this standard. Based on a survey of information security professionals, we found that ISO 17799 is comprehensive, but not parsimonious.
国家哲学社会科学文献中心版权所有