A model and framework for online security benchmarking


Autoria(s): Pye, Graeme; Warren, Matthew
Data(s)

01/06/2007

Resumo

The variety of threats and vulnerabilities within the online business environment are dynamic and thus constantly changing in how they impinge upon online functionality, compromise organizational or customer information, contravene security implementations and thereby undermine online customer confidence. To nullify such threats, online security management must become proactive, by reviewing and continuously improving online security to strengthen the enterpriseis online security measures and policies, as modelled. The benchmarking process utilises a proposed benchmarking framework to guide both the development and application of security benchmarks created in the first instance, from recognized information technology (IT) and information security standards (ISS) and then their application to the online security measures and policies utilized within online business. Furthermore, the benchmarking framework incorporates a continuous improvement review process to address the relevance of benchmark development over time and the changes in threat focus.<br />

Identificador

http://hdl.handle.net/10536/DRO/DU:30007062

Idioma(s)

eng

Publicador

Slovensko Drustvo Informatika

Relação

http://dro.deakin.edu.au/eserv/DU:30007062/pye-modelandframework-2007.pdf

http://www.informatica.si/PDF/31-2/09_Pye-A Model and Framework for Online...pdf

Direitos

2007, Slovensko Drustvo Informatika

Palavras-Chave #online #security #benchmarking
Tipo

Journal Article