首页> 外文期刊>IFAC PapersOnLine >The effectiveness of COBIT 5 Information Security Framework for reducing Cyber Attacks on Supply Chain Management System
【24h】

The effectiveness of COBIT 5 Information Security Framework for reducing Cyber Attacks on Supply Chain Management System

机译:COBIT 5信息安全框架对减少对供应链管理系统的网络攻击的有效性

获取原文
           

摘要

Cyber espionage and malware attacks pose a great danger to many organisations, particularly those that embrace the use of modern technology to enhance efficiency. Although new off-the-shelf applications for enterprise resources planning (ERP) and management provide higher availability and better service, they are often customised, that can leave some scope for security gaps. While organisations have put in place tight security measures, malicious end users use security loopholes found in various systems to commit common cybercrimes such as denial of services, web hacking and defacement, malware, spam and phishing. The Supply Chain Management System (SCMS) is no stranger to such cybercrimes and certainly requires an Information Systems (IS) Security Framework in fighting off malware attacks. This paper investigates the effectiveness of the implementation of the COBIT 5 Information Security Framework in the reduction of risk of Cyber Attacks on SCMS. In this effort, qualitative data was gathered for a comprehensive security questionnaire targeted to IS administrators and managers responsible for Supply Chain organizations that use COBIT 5 framework for security. The results indicated that COBIT 5 added a new dimension for IS security governance via strict policies and rule set that further strengthened enterprise applications security. Overall, we found that organization benefited from implementing the COBIT 5 framework security measures in SCMS and ERP systems.
机译:网络间谍活动和恶意软件攻击对许多组织构成了极大的威胁,特别是那些采用现代技术来提高效率的组织。尽管用于企业资源计划(ERP)和管理的新的现成应用程序提供了更高的可用性和更好的服务,但是它们通常是自定义的,这可能会留出一些安全漏洞。当组织采取严格的安全措施时,恶意的最终用户会利用各种系统中的安全漏洞来实施常见的网络犯罪,例如拒绝服务,Web黑客和破坏,恶意软件,垃圾邮件和网络钓鱼。供应链管理系统(SCMS)对于这种网络犯罪并不陌生,并且肯定需要一个信息系统(IS)安全框架来抵御恶意软件攻击。本文研究了实施COBIT 5信息安全框架在降低SCMS网络攻击风险方面的有效性。在这项工作中,针对针对IS管理员和负责使用COBIT 5框架进行安全管理的供应链组织的经理的综合安全性问卷收集了定性数据。结果表明,COBIT 5通过严格的策略和规则集为IS安全治理添加了新的维度,从而进一步增强了企业应用程序的安全性。总体而言,我们发现组织受益于在SCMS和ERP系统中实施COBIT 5框架安全措施。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号