首页> 外文会议>International Conference on Telecommunication Systems, Services, and Applications >Designing Information Security Governance Recommendations and Roadmap Using COBIT 2019 Framework and ISO 27001:2013 (Case Study Ditreskrimsus Polda XYZ)
【24h】

Designing Information Security Governance Recommendations and Roadmap Using COBIT 2019 Framework and ISO 27001:2013 (Case Study Ditreskrimsus Polda XYZ)

机译:使用Cobit 2019框架和ISO 27001:2013设计信息安全治理建议和路线图(案例研究DITRESKRIMSUS POLDA XYZ)

获取原文

摘要

The use of technology has applied in all areas of Polri's duties. However, the use of this technology does not yet have a level of capability in information security management. For this reason, it is necessary to design recommendations and an ideal information governance roadmap based on COBIT 2019 and ISO/IEC 27001: 2013 concerning Information Security Management Systems (ISMS). The design is carried out based on six stages in the Design Science Research Methodology (DSRM) in the form of identify problems and motivate, define objects of a solution, design and development, demonstration, evaluation, and communication. By mapping ISO/IEC 27001: 2013 into COBIT 2019, 29 domains of the 2019 COBIT core model selected which became the basis for designing and assessing the level of information security management capability at Ditreskrimsus Polda XYZ. The formulation of recommendations considered the assessment results. It produced the model of organizational structure, human resources, and policies and procedures that must be applied to Ditreskrimsus Polda XYZ in the form of a roadmap starting in 2021-2025 in managing information security. This research contributes to producing an information security governance design.
机译:技术的使用应用于Polri职责的所有领域。但是,这种技术的使用尚未在信息安全管理中具有级别的能力。出于这个原因,有必要根据信息安全管理系统(ISMS)设计基于Cobit 2019和ISO / IEC 27001:2013的建议和理想的信息治理路线图。该设计基于设计科学研究方法(DSRM)的六个阶段,以识别问题和激励,定义解决方案,设计和开发,演示,评估和通信的对象。通过将ISO / IEC 27001:2013映射到2019年的Cobit 2019,299,2019年COBIT核心模型的29个域成为设计和评估DITRESKRIMSUS POLDA XYZ信息安全管理能力水平的基础。建议的制定审议了评估结果。它制作了组织结构,人力资源和政策和程序的模型,这些政策和程序必须以2021-2025开始的路线图的形式应用于DITRESKRIMSUS POLDA XYZ,以便在2021-2025管理信息安全。该研究有助于制作信息安全治理设计。

著录项

相似文献

  • 外文文献
  • 中文文献
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号