A National RACI Chart for an Interoperable "National Cyber Security" Framework

被引:0
作者
Ech-Cherif El Kettani, Mohamed Dafir [1 ]
Debbagh, Taieb [2 ]
机构
[1] Univ Mohammed V Souissi, Rabat, Morocco
[2] Minist Ind, Commerce & NT, Rabat, Morocco
来源
PROCEEDINGS OF THE 8TH EUROPEAN CONFERENCE ON INFORMATION WARFARE AND SECURITY | 2009年
关键词
National Cybersecurity; RACI Chart; COBIT;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Governments worldwide have faced serious Cyberterrorism threats, in a context where interoperability of "TransNational CyberSecurity Plans" is quite absent, in order to deal with incidents. It is important to know which agency or agencies should be given the responsibility for "National Cybersecurity", in order to ensure that computer security will receive government-wide attention. Therefore, sectors and lead agencies should assess the reliability, vulnerability, and threat environments of the infrastructures and employ appropriate protective measures and responses to safeguard them. Responsibility Charting is a technique for identifying functional areas where there are process ambiguities, bringing the differences out, and resolving them through a cross-functional collaborative effort. We provide in this paper a "National RACI chart" that defines for each National Cyber Security process, who is "Responsible", "Accountable", "Consulted" and "Informed". The "RACI chart" defines in detail what has to be delegated and to whom, and what kind of responsibility will be affected to one stakeholder instead of another. Thus, it will aid organisations and teams identifying the responsibility for specific elements at the national level.
引用
收藏
页码:60 / 70
页数:11
相关论文
共 6 条
[1]  
DEBBAGH T, 2009, 9 EUR C E GOV ECEG20
[2]  
ELKETTANI MD, 2008, 2 INT C THEOR PRACT
[3]  
*IT GOV I, 2005, COB V4 0 CONTR OBJ M
[4]  
KELLY R, 2006, RACI CHARTS TOOL IDE
[5]  
LACHAPELLE E, 2007, ISO 17799 2005 ISO 2
[6]  
Smith Michael L., 2005, ROLE RESPONSIBILITY