首页> 外文期刊>Information management & computer security >Examining the suitability of industrial safety management approaches for information security incident management
【24h】

Examining the suitability of industrial safety management approaches for information security incident management

机译:检查工业安全管理方法对信息安全事件管理的适用性

获取原文
获取原文并翻译 | 示例
       

摘要

Purpose - This paper aims to discuss whether recent theoretical and practical approaches within industrial safety management might be applicable to, and solve challenges experienced in, the field of information security, specifically related to incident management. Design/methodology/approach - A literature review was carried out. Findings - Principles, research and experiences on the issues of plans, training and learning in the context of industrial safety management would be suitable for adoption into the field of information security incident management and aid in addressing current challenges. Research limitations/implications - There are a number of reasons why approaches from industrial safety management have something to offer to information security incident management: the former field is more mature and has longer traditions, there is more organizational research on industrial safety issues than on information security issues so far, individual awareness is higher for industrial safety risks and worker participation in systematic industrial safety work is ensured by law. More organizational research on information security issues and continuous strengthening of individual security awareness would push information security to further maturity levels where current challenges are solved. Practical implications - This paper shows that the field of information security incident management would gain from closer collaborations with industrial safety management, both in research and in practical loss prevention in organizations. The ideas discussed in this paper form a basis for further research on practical implementations and case studies. Originality/value - The main audience of this paper includes information security researchers and practitioners, as they will find inspirational theories and experiences to bring into their daily work and future projects.
机译:目的-本文旨在讨论工业安全管理中的最新理论和实践方法是否可能适用于信息安全领域,尤其是与事件管理相关的信息安全领域,并解决所遇到的挑战。设计/方法/方法-进行了文献综述。调查结果-在工业安全管理方面,有关计划,培训和学习的原则,研究和经验将适合应用于信息安全事件管理领域,并有助于应对当前的挑战。研究的局限性/含义-从工业安全管理的方法中可以为信息安全事件管理提供一些东西的原因有很多:前一个领域更加成熟,具有更长的传统,关于工业安全问题的组织研究比对信息的研究更多迄今为止,由于存在安全问题,个人对工业安全风险的意识更高,法律确保了工人参与系统的工业安全工作。有关信息安全问题的更多组织研究以及不断增强的个人安全意识将把信息安全推向进一步成熟的水平,从而解决当前的挑战。实际意义-本文表明,在组织研究和组织实际损失预防方面,与工业安全管理的更紧密合作将使信息安全事件管理领域受益。本文讨论的思想为进一步研究实际实现和案例研究奠定了基础。原创性/价值-本文的主要受众包括信息安全研究人员和从业人员,他们将找到鼓舞人心的理论和经验,并将其带入日常工作和未来项目中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号