首页> 外文期刊>Communications of the Association for Information Systems >ISO 17799: 'Best Practices' in Information Security Management?
【24h】

ISO 17799: 'Best Practices' in Information Security Management?

机译:ISO 17799:信息安全管理中的“最佳实践”?

获取原文
           

摘要

To protect the information assets of organizations, many different standards and guidelines have been proposed. Among them, International standard ISO 17799 is one of the most prominent international efforts on information security. This standard provides both an authoritative statement on information security and the procedures to be adopted by organizations to ensure information security. Security professionals claim ISO 17799 to be a suitable model for information security management and an appropriate vehicle for addressing information security management issues in the modern organization. However, to our knowledge, no empirical studies have been conducted to validate this standard. Based on a survey of information security professionals, we found that ISO 17799 is comprehensive, but not parsimonious.
机译:为了保护组织的信息资产,已经提出了许多不同的标准和准则。其中,国际标准ISO 17799是信息安全方面最突出的国际努力之一。该标准提供了有关信息安全的权威性声明,以及组织为确保信息安全而将采用的程序。安全专业人员声称ISO 17799是信息安全管理的合适模型,是解决现代组织中信息安全管理问题的合适工具。但是,据我们所知,尚未进行任何经验研究来验证该标准。根据对信息安全专业人员的调查,我们发现ISO 17799是全面的,但并不精简。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号