首页> 外文会议>IFAC Symposium on Information Control Problems in Manufacturing >The effectiveness of COBIT 5 Information Security Framework for reducing Cyber Attacks on Supply Chain Management System
【24h】

The effectiveness of COBIT 5 Information Security Framework for reducing Cyber Attacks on Supply Chain Management System

机译:COBIT 5信息安全框架减少电源链管理系统网络攻击的有效性

获取原文

摘要

Cyber espionage and malware attacks pose a great danger to many organisations, particularly those that embrace the use of modern technology to enhance efficiency. Although new off-the-shelf applications for enterprise resources planning (ERP) and management provide higher availability and better service, they are often customised, that can leave some scope for security gaps. While organisations have put in place tight security measures, malicious end users use security loopholes found in various systems to commit common cybercrimes such as denial of services, web hacking and defacement, malware, spam and phishing. The Supply Chain Management System (SCMS) is no stranger to such cybercrimes and certainly requires an Information Systems (IS) Security Framework in fighting off malware attacks. This paper investigates the effectiveness of the implementation of the COBIT 5 Information Security Framework in the reduction of risk of Cyber Attacks on SCMS. In this effort, qualitative data was gathered for a comprehensive security questionnaire targeted to IS administrators and managers responsible for Supply Chain organizations that use COBIT 5 framework for security. The results indicated that COBIT 5 added a new dimension for IS security governance via strict policies and rule set that further strengthened enterprise applications security. Overall, we found that organization benefited from implementing the COBIT 5 framework security measures in SCMS and ERP systems.
机译:网络间谍和恶意软件攻击对许多企业而言,尤其是那些涵盖使用现代技术来提高效率有很大的危险。虽然对企业资源的新关的现成应用规划(ERP)和管理提供更高的可用性和更好的服务,他们往往是定制的,可以留下一些余地的安全漏洞。虽然组织到位,严密的保安措施,恶意最终用户使用在各种系统中的安全漏洞提交常见的网络犯罪,如拒绝服务,网络黑客和毁损,恶意软件,垃圾邮件和网络钓鱼。供应链管理系统(SCMS)并不陌生,这种网络犯罪,肯定需要一个信息系统(IS)安全框架在对抗恶意软件的攻击。本文研究了COBIT 5信息安全框架的在SCMS网络攻击的风险降低实施的有效性。在这一努力中,定性数据收集了针对性的全面的安全调查问卷管理者与被管理者负责供应链组织,为了安全使用COBIT 5框架。结果表明:通过严格的政策和规则集,进一步加强了企业应用的安全性,COBIT 5增加了IS安全治理一个新的层面。总体而言,我们发现,从组织实施在SCMS和ERP系统的COBIT 5框架安全措施中受益。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号