首页> 外文会议>International conference on business information systems >A Maturity Model for IT-Related Security Incident Management
【24h】

A Maturity Model for IT-Related Security Incident Management

机译:与IT相关的安全事件管理的成熟度模型

获取原文

摘要

The purpose of the study is to validate the ability of a maturity model for measuring escalation capability of IT-related security incident. First, an Escalation Maturity Model (EMM) and a tool were developed to measure the maturity of an organization to escalate IT-related security incidents. An IT tool for self-assessment was used by a representative from three organizations in the Swedish health sector to measure the organization's ability to escalate IT-related security incident. Second, typical security incident scenarios were created. The incident managers from the different organizations were interviewed about their organization's capabilities to deal with these scenarios. Third, a number of independent information security experts, none of whom had seen the results of EMM, ranked how the three different organizations have handled the different scenarios using a measurable scale. Finally, the results of EMM are compared against the measurable result of the interviews to establish the predictive ability of EMM. The findings of the proof of concept study shows that the outcome of EMM and the way in which an organization would handle different incidents correspond well, at least for organizations with low and medium maturity levels.
机译:该研究的目的是验证成熟度模型用于度量IT相关安全事件升级能力的能力。首先,开发了升级成熟度模型(EMM)和工具来衡量组织升级与IT相关的安全事件的成熟度。瑞典卫生部门三个组织的代表使用了一种用于自我评估的IT工具,以衡量该组织升级与IT相关的安全事件的能力。其次,创建了典型的安全事件场景。采访了来自不同组织的事件经理,了解他们组织处理这些情况的能力。第三,许多独立的信息安全专家(没有人看到EMM的结果)以可衡量的规模对这三个不同的组织如何处理不同的情况进行了排名。最后,将EMM的结果与访谈的可测量结果进行比较,以建立EMM的预测能力。概念验证研究的结果表明,EMM的结果以及组织处理不同事件的方式具有很好的一致性,至少对于成熟度较低和中等的组织而言。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号