This paper introduces a method for evaluating information security levels of organisations using a developed framework. The framework is based on Estonian Information Security Standard categories which is compatible with ISO 27001 standard. The framework covers both technical and organisational aspects of information security. The results provide an overview of security to the organisation’s management, compare different organisations across the region, and support strategic decision-making on a national level.
CITATION STYLE
Seeba, M., Mäses, S., & Matulevičius, R. (2022). Method for Evaluating Information Security Level in Organisations. In Lecture Notes in Business Information Processing (Vol. 446 LNBIP, pp. 644–652). Springer Science and Business Media Deutschland GmbH. https://doi.org/10.1007/978-3-031-05760-1_39
Mendeley helps you to discover research relevant for your work.