首页> 外文会议>International Conference on Information Technology and Electrical Engineering >Development of Enterprise Security Framework in SKK Migas Based on Integration of ISO 27000 and SABSA Model
【24h】

Development of Enterprise Security Framework in SKK Migas Based on Integration of ISO 27000 and SABSA Model

机译:基于ISO 27000和SABSA模型集成的SKK Migas企业安全框架开发

获取原文

摘要

This paper presents the development of Enterprise Security Framework (ESF) for an Indonesian government institution called SKK Migas (Special Task Force for Upstream Oil and Gas Business Activities). The framework developed based on two security standard namely ISO 27000 and SABSA. The development is started by evaluating available information security standard and best practice used in enterprise scale. The next step is analyzing existing security policy and implementation regarding the Information Security Management System (ISMS) in SKK Migas and then perform gap analysis. The main step is the synthesis of security framework which intended to improve information security management in SKK Migas. The resulted security framework covers 14 security domains which will be used to control information security management within the institution.
机译:本文介绍了印尼政府机构SKK Migas(上游石油和天然气业务活动特别工作组)的企业安全框架(ESF)的开发情况。该框架是根据两个安全标准(即ISO 27000和SABSA)开发的。通过评估可用的信息安全标准和企业规模中使用的最佳实践来开始开发。下一步是分析有关SKK Migas中信息安全管理系统(ISMS)的现有安全策略和实施,然后执行差距分析。主要步骤是综合安全框架,以改善SKK Migas中的信息安全管理。最终的安全框架涵盖了14个安全域,这些域将用于控制机构内的信息安全管理。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号