Advanced information security management evaluation system

13Citations
Citations of this article
55Readers
Mendeley users who have this article in their library.

Abstract

Information security management systems (ISMSs) are used to manage information about their customers and themselves by governments or business organizations following advances in e-commerce, open networks, mobile networks, and Internet banking. This paper explains the existing ISMSs and presents a comparative analysis. The discussion deals with different types of ISMSs. We addressed issues within the existing ISMSs via analysis. Based on these analyses, then we proposes the development of an information security management evaluation system (ISMES). The method can be applied by a self-evaluation of the organization and an evaluation of the organization by the evaluation committee. The contribution of this study enables an organization to refer to and improve its information security levels. The case study can also provide a business organization with an easy method to build ISMS and the reduce cost of information security evaluation. © 2011 KSII.

Cite

CITATION STYLE

APA

Jo, H., Kim, S., & Won, D. (2011). Advanced information security management evaluation system. KSII Transactions on Internet and Information Systems, 5(6), 1192–1213. https://doi.org/10.3837/tiis.2011.06.006

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free