首页> 外文会议>Emerging Markets Queries in Finance and Business Conference >Assessment and continuous improvement of information security based on TQM and business excellence principles.
【24h】

Assessment and continuous improvement of information security based on TQM and business excellence principles.

机译:基于TQM和卓越商业卓越原则的信息安全评估与持续改进。

获取原文

摘要

This paper highlights a part of the results of a doctoral research regarding information security management systems in the context of business excellence conducted by authors in the Research Centre of Business Administration of The Bucharest University of Economic Studies, Romania. It focuses on an approach for self-assessment and continuous improvement of information security based on the fundamental concepts and criteria of the European Foundation for Quality Management (EFQM) Business Excellence Model. The first objective of this paper is to highlight the state of the art regarding the approaches used for the assessment and continuous improvement of information security. A second objective is to propose a methodology for assessment and continuous improvement of information security integrating the criteria of the EFQM Model and its RADAR (Results, Approaches, Deploy, Assess and Refine) logic. The methodology presented can be used by organisations wishing to go beyond compliance with the requirements for Information Security Management System defined in standards such as ISO 27001 or NIST standards, to identify opportunities for improvement and to coordinate efforts towards sustainable information security performance.
机译:本文突出了关于信息安全管理系统的博士研究结果的一部分,在罗马尼亚布加勒斯特大学商业管理研究中心进行的作者中,卓越的作者。它专注于基于欧洲质量管理(EFQM)商业卓越模型的基本概念和标准的自我评估和持续改进信息安全的方法。本文的第一个目的是突出关于用于评估和持续改进信息安全的方法的技术。第二个目的是提出用于评估和持续改进信息安全的方法,整合EFQM模型的标准及其雷达(结果,方法,部署,评估和精炼)逻辑。提供的方法可以由希望超越遵守ISO 27001或NIST标准中定义的信息安全管理系统的要求,以确定改进机会,并协调可持续信息安全性能的机会。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号