Cargando…
Threats, Risks and the Derived Information Security Strategy
This article concentrates on the development of an information security strategy. An information security strategy needs to focus on an overall objective, usually the objectives laid out in an organization’s business strategy and its derived information technology strategy, where it takes the status...
Autores principales: | , |
---|---|
Formato: | Online Artículo Texto |
Lenguaje: | English |
Publicado: |
2012
|
Materias: | |
Acceso en línea: | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7178875/ http://dx.doi.org/10.1007/978-3-658-00333-3_2 |
_version_ | 1783525557028257792 |
---|---|
author | Fibikova, Lenka Mueller, Roland |
author_facet | Fibikova, Lenka Mueller, Roland |
author_sort | Fibikova, Lenka |
collection | PubMed |
description | This article concentrates on the development of an information security strategy. An information security strategy needs to focus on an overall objective, usually the objectives laid out in an organization’s business strategy and its derived information technology strategy, where it takes the status quo and reflects the main objectives derived and postulates how and when to close the identified gaps. This strategy approach for improving information security is intended for an organization which supports an automotive and captive finance enterprise but is not restricted to this. The approach is aligned to the scope of ISO 270002 “Code of Practice for an Information Security Management System” [ISO05]. However, compliance is left out of the scope. The strategy concentrates on four areas considered the relevant areas for infonnation security: people, business processses. applications and infrastructure and has therefore a clear focus on processes, stability, resilience and efficiency which are the pillars of a successful enterprise. |
format | Online Article Text |
id | pubmed-7178875 |
institution | National Center for Biotechnology Information |
language | English |
publishDate | 2012 |
record_format | MEDLINE/PubMed |
spelling | pubmed-71788752020-04-23 Threats, Risks and the Derived Information Security Strategy Fibikova, Lenka Mueller, Roland ISSE 2012 Securing Electronic Business Processes Article This article concentrates on the development of an information security strategy. An information security strategy needs to focus on an overall objective, usually the objectives laid out in an organization’s business strategy and its derived information technology strategy, where it takes the status quo and reflects the main objectives derived and postulates how and when to close the identified gaps. This strategy approach for improving information security is intended for an organization which supports an automotive and captive finance enterprise but is not restricted to this. The approach is aligned to the scope of ISO 270002 “Code of Practice for an Information Security Management System” [ISO05]. However, compliance is left out of the scope. The strategy concentrates on four areas considered the relevant areas for infonnation security: people, business processses. applications and infrastructure and has therefore a clear focus on processes, stability, resilience and efficiency which are the pillars of a successful enterprise. 2012-06-04 /pmc/articles/PMC7178875/ http://dx.doi.org/10.1007/978-3-658-00333-3_2 Text en © Springer Fachmedien Wiesbaden 2012 This article is made available via the PMC Open Access Subset for unrestricted research re-use and secondary analysis in any form or by any means with acknowledgement of the original source. These permissions are granted for the duration of the World Health Organization (WHO) declaration of COVID-19 as a global pandemic. |
spellingShingle | Article Fibikova, Lenka Mueller, Roland Threats, Risks and the Derived Information Security Strategy |
title | Threats, Risks and the Derived Information Security Strategy |
title_full | Threats, Risks and the Derived Information Security Strategy |
title_fullStr | Threats, Risks and the Derived Information Security Strategy |
title_full_unstemmed | Threats, Risks and the Derived Information Security Strategy |
title_short | Threats, Risks and the Derived Information Security Strategy |
title_sort | threats, risks and the derived information security strategy |
topic | Article |
url | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7178875/ http://dx.doi.org/10.1007/978-3-658-00333-3_2 |
work_keys_str_mv | AT fibikovalenka threatsrisksandthederivedinformationsecuritystrategy AT muellerroland threatsrisksandthederivedinformationsecuritystrategy |