Cargando…

Threats, Risks and the Derived Information Security Strategy

This article concentrates on the development of an information security strategy. An information security strategy needs to focus on an overall objective, usually the objectives laid out in an organization’s business strategy and its derived information technology strategy, where it takes the status...

Descripción completa

Detalles Bibliográficos
Autores principales: Fibikova, Lenka, Mueller, Roland
Formato: Online Artículo Texto
Lenguaje:English
Publicado: 2012
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7178875/
http://dx.doi.org/10.1007/978-3-658-00333-3_2
_version_ 1783525557028257792
author Fibikova, Lenka
Mueller, Roland
author_facet Fibikova, Lenka
Mueller, Roland
author_sort Fibikova, Lenka
collection PubMed
description This article concentrates on the development of an information security strategy. An information security strategy needs to focus on an overall objective, usually the objectives laid out in an organization’s business strategy and its derived information technology strategy, where it takes the status quo and reflects the main objectives derived and postulates how and when to close the identified gaps. This strategy approach for improving information security is intended for an organization which supports an automotive and captive finance enterprise but is not restricted to this. The approach is aligned to the scope of ISO 270002 “Code of Practice for an Information Security Management System” [ISO05]. However, compliance is left out of the scope. The strategy concentrates on four areas considered the relevant areas for infonnation security: people, business processses. applications and infrastructure and has therefore a clear focus on processes, stability, resilience and efficiency which are the pillars of a successful enterprise.
format Online
Article
Text
id pubmed-7178875
institution National Center for Biotechnology Information
language English
publishDate 2012
record_format MEDLINE/PubMed
spelling pubmed-71788752020-04-23 Threats, Risks and the Derived Information Security Strategy Fibikova, Lenka Mueller, Roland ISSE 2012 Securing Electronic Business Processes Article This article concentrates on the development of an information security strategy. An information security strategy needs to focus on an overall objective, usually the objectives laid out in an organization’s business strategy and its derived information technology strategy, where it takes the status quo and reflects the main objectives derived and postulates how and when to close the identified gaps. This strategy approach for improving information security is intended for an organization which supports an automotive and captive finance enterprise but is not restricted to this. The approach is aligned to the scope of ISO 270002 “Code of Practice for an Information Security Management System” [ISO05]. However, compliance is left out of the scope. The strategy concentrates on four areas considered the relevant areas for infonnation security: people, business processses. applications and infrastructure and has therefore a clear focus on processes, stability, resilience and efficiency which are the pillars of a successful enterprise. 2012-06-04 /pmc/articles/PMC7178875/ http://dx.doi.org/10.1007/978-3-658-00333-3_2 Text en © Springer Fachmedien Wiesbaden 2012 This article is made available via the PMC Open Access Subset for unrestricted research re-use and secondary analysis in any form or by any means with acknowledgement of the original source. These permissions are granted for the duration of the World Health Organization (WHO) declaration of COVID-19 as a global pandemic.
spellingShingle Article
Fibikova, Lenka
Mueller, Roland
Threats, Risks and the Derived Information Security Strategy
title Threats, Risks and the Derived Information Security Strategy
title_full Threats, Risks and the Derived Information Security Strategy
title_fullStr Threats, Risks and the Derived Information Security Strategy
title_full_unstemmed Threats, Risks and the Derived Information Security Strategy
title_short Threats, Risks and the Derived Information Security Strategy
title_sort threats, risks and the derived information security strategy
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7178875/
http://dx.doi.org/10.1007/978-3-658-00333-3_2
work_keys_str_mv AT fibikovalenka threatsrisksandthederivedinformationsecuritystrategy
AT muellerroland threatsrisksandthederivedinformationsecuritystrategy