首页> 外文会议>2014 International Conference on Information, Communication Technology and System >A proposal of an organizational information security culture framework
【24h】

A proposal of an organizational information security culture framework

机译:组织信息安全文化框架的建议

获取原文
获取原文并翻译 | 示例

摘要

The efficiency of various technical information security controls is based on the `people' who interact with the information every day. Information security culture aims at protecting information assets by guiding how things are done in organization in regard to information security through influencing employees' security behavior. This paper review key frameworks that were proposed in the literature in the period between the years 2003 and 2013, to establish and maintain information security culture inside organizations. The review draws the attention to the need for more investigation in the field to provide comprehensive frameworks for information security culture within organization. This paper attempts to propose one. The framework incorporates key change management principles and has five main dimensions that represent strategy, technology, organization, people and environment issues that affect the effective information security culture.
机译:各种技术信息安全控制的效率取决于每天与信息交互的“人”。信息安全文化旨在通过影响员工的安全行为来指导组织在信息安全方面的工作方式,从而保护信息资产。本文回顾了文献中在2003年至2013年期间提出的关键框架,以建立和维护组织内部的信息安全文化。审查提请注意需要在该领域进行更多调查,以为组织内的信息安全文化提供全面的框架。本文试图提出一个。该框架包含关键变更管理原则,并具有五个主要方面,分别代表影响有效信息安全文化的战略,技术,组织,人员和环境问题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号