Definition of Information Systems Security Policies

被引:1
|
作者
Lopes, Isabel Maria [1 ,2 ,3 ]
Pereira, Joao Paulo [2 ,3 ]
Oliveira, Pedro [3 ]
机构
[1] Univ Minho, Ctr ALGORITMI, Braga, Portugal
[2] Inst Politecn Braganca, UNIAG Appl Management Res Unit, Braganca, Portugal
[3] Polytech Inst Braganca, Sch Technol & Management, Braganca, Portugal
来源
RECENT ADVANCES IN INFORMATION SYSTEMS AND TECHNOLOGIES, VOL 3 | 2017年 / 571卷
关键词
Information security; Definition of security policies; Information systems security policies;
D O I
10.1007/978-3-319-56541-5_23
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Information systems security (ISS) is crucial in all and each one of the services provided by organizations. Among security measures, policies assume a central role in literature. A lot has been said about this issue over the last years, however, the analysis of some studies conducted by different authors show that this ISS measure has not yet been institutionalized in most companies. By approaching aspects intrinsically related to ISS policies, this paper aims to contribute suggestions of some actions which might be taken to formulate and implement an ISS policy. Methodologically, the study involved interviewing the officials in charge of information systems in 21 Small and Medium Sized Enterprises (SMEs) in Portugal. The results are discussed in the light of literature and future works are identified with the aim of enabling the implementation of ISS.
引用
收藏
页码:225 / 234
页数:10
相关论文
共 50 条
  • [31] The Enhancement of Security in Healthcare Information Systems
    Liu, Chia-Hui
    Chung, Yu-Fang
    Chen, Tzer-Shyong
    Wang, Sheng-De
    JOURNAL OF MEDICAL SYSTEMS, 2012, 36 (03) : 1673 - 1688
  • [32] The Enhancement of Security in Healthcare Information Systems
    Chia-Hui Liu
    Yu-Fang Chung
    Tzer-Shyong Chen
    Sheng-De Wang
    Journal of Medical Systems, 2012, 36 : 1673 - 1688
  • [33] Integrated digital information security systems
    Gherasim, Z
    Bica, MS
    Ivan, I
    Nicolaescu, I
    6TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL XVIII, PROCEEDINGS: INFORMATION SYSTEMS, CONCEPTS AND APPLICATIONS OF SYSTEMICS, CYBERNETICS AND INFORMATICS, 2002, : 120 - 123
  • [34] Organizational Information Security Management for Sustainable Information Systems: An Unethical Employee Information Security Behavior Perspective
    Chu, Amanda M. Y.
    So, Mike K. P.
    SUSTAINABILITY, 2020, 12 (08)
  • [35] Information security architecture synthesis in distributed information computation systems
    Grusho A.A.
    Grusho N.A.
    Timonina E.E.
    Automatic Control and Computer Sciences, 2017, 51 (8) : 799 - 804
  • [36] Human resource information systems: Information security concerns for organizations
    Zafar, Humayun
    HUMAN RESOURCE MANAGEMENT REVIEW, 2013, 23 (01) : 105 - 113
  • [37] Predicting communication constructs towards determining information security policies compliance
    Rantao, Tsholofelo
    Njenga, Kennedy
    SOUTH AFRICAN JOURNAL OF INFORMATION MANAGEMENT, 2020, 22 (01):
  • [38] Factors Impacting Users' Compliance with Information Security Policies: An Empirical Study
    Alzahrani, Latifa
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (10) : 437 - 447
  • [39] Influence of National Culture on Employees' Compliance with Information Systems Security (ISS) Policies: Towards ISS Culture in Ethiopian Companies
    Arage, Tilahun M.
    Belanger, France
    Tesema, Tibebe B.
    AMCIS 2015 PROCEEDINGS, 2015,
  • [40] Integrating Information Security into Quality Management Systems
    Stoll, Margareth
    TECHNOLOGICAL DEVELOPMENTS IN NETWORKING, EDUCATION AND AUTOMATION, 2010, : 455 - 460