...
首页> 外文期刊>Information & computer sceurity >The hunt for computerized support in information security policy management: A literature review
【24h】

The hunt for computerized support in information security policy management: A literature review

机译:在信息安全政策管理中寻找计算机支持:文献综述

获取原文
获取原文并翻译 | 示例
           

摘要

Purpose - The purpose of this paper is to survey existing information security policy (ISP) management research to scrutinise the extent to which manual and computerised support has been suggested, and the way in which the suggested support has been brought about. Design/methodology/approach - The results are based on a literature review of ISP management research published between 1990 and 2017. Findings - Existing research has focused mostly on manual support for managing ISPs. Very few papers have considered computerised support. The entire complexity of the ISP management process has received little attention. Existing research has not focused much on the interaction between the different ISP management phases. Few research methods have been used extensively and intervention-oriented research is rare. Research limitations/implications - Future research should to a larger extent address the interaction between the ISP management phases, apply more intervention research to develop computerised support for ISP management, investigate to what extent computerised support can enhance integration of ISP management phases and reduce the complexity of such a management process. Practical implications - The limited focus on computerised support for ISP management affects the kind of advice and artefacts the research community can offer to practitioners. Originality/value - Today, there are no literature reviews on to what extent computerised support the ISP management process. Findings on how the complexity of ISP management has been addressed and the research methods used extend beyond the existing knowledge base, allowing for a critical discussion of existing research and future research needs.
机译:目的 - 本文的目的是调查现有的信息安全政策(ISP)管理研究,以审查已建议手动和计算机支持的程度以及提出建议的支持的方式。设计/方法/方法 - 结果基于1990年至2017年之间发表的ISP管理研究的文献综述。发现 - 现有研究主要集中在管理ISP的手动支持上。很少有论文考虑了计算机化支持。 ISP管理过程的整个复杂性几乎没有得到关注。现有的研究并没有太多关注不同的ISP管理阶段之间的相互作用。很少有研究方法被广泛使用,并且以干预为导向的研究很少。研究局限性/含义 - 未来的研究应在很大程度上解决ISP管理阶段之间的相互作用,应用更多的干预研究来为ISP管理开发计算机化支持,调查计算机化支持可以增强ISP管理阶段的整合并降低复杂性这样的管理过程。实际意义 - 对ISP管理的计算机支持的关注有限影响研究社区可以为从业者提供的建议和人工制品。独创性/价值 - 如今,没有有关计算机化支持ISP管理过程的文献评论。关于如何解决ISP管理的复杂性以及所使用的研究方法的发现,超出了现有知识库,从而对现有研究和未来的研究需求进行了批判性讨论。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号