Better Information Security Management in Municipalities

被引:0
作者
De lange, Joshua [1 ]
Von Solms, Rossouw [1 ]
Gerber, Mariana [1 ]
机构
[1] Nelson Mandela Metropolitan Univ, Univ Way, ZA-6001 Port Elizabeth, South Africa
来源
2015 IST-AFRICA CONFERENCE | 2015年
关键词
Governance of Information Security; Information Security; Information Security Management; Information Security Policy; Municipalities; Municipal Council; ISO/IEC; 27002; standard;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Municipalities handle valuable information in very large quantities on a daily basis. Due to the value, and often confidential nature, of this information, the protection of the information and the related technologies are a key concern for municipalities, especially in South Africa. For this very reason, several official government documents require South African municipalities to implement effective information security management systems. However, according to the Auditor General of South Africa, municipalities are struggling in this regard. This study uses a literature review, document analysis, and argumentation to identify the crucial components of an information security management system. These components are then logically presented in a hierarchical structure to possibly assist municipalities to improve their individual information security management processes. Addressing these components can also be applied in municipalities across Africa to improve information security management.
引用
收藏
页数:10
相关论文
共 12 条
[1]  
[Anonymous], KING COD GOV S AFR
[2]  
[Anonymous], 270052008 ISOIEC
[3]  
[Anonymous], GUIDELINE DOCUMENT A
[4]  
[Anonymous], MUN GUID ROADM SUCC
[5]  
[Anonymous], CONS GEN REP AUD OUT
[6]  
[Anonymous], 270002014 ISOIEC
[7]  
[Anonymous], 2013, 270022013 ISOIEC
[8]  
[Anonymous], 2005, ISO/IEC 27001:2005
[9]  
Department of Public Services and Administration, 2012, PUBL SERV CORP GOV I
[10]  
Olivier M.S., 2009, INFORM TECHNOLOGY RE