Advanced Approach to Information Security Management System Model for Industrial Control System

被引:2
|
作者
Park, Sanghyun [1 ]
Lee, Kyungho [1 ]
机构
[1] Korea Univ, CIST, Seoul 136713, South Korea
来源
SCIENTIFIC WORLD JOURNAL | 2014年
关键词
D O I
10.1155/2014/348305
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
Organizations make use of important information in day-to-day business. Protecting sensitive information is imperative and must be managed. Companies in many parts of the world protect sensitive information using the international standard known as the information security management system (ISMS). ISO 27000 series is the international standard ISMS used to protect confidentiality, integrity, and availability of sensitive information. While an ISMS based on ISO 27000 series has no particular flaws for general information systems, it is unfit to manage sensitive information for industrial control systems (ICSs) because the first priority of industrial control is safety of the system. Therefore, a new information security management system based on confidentiality, integrity, and availability as well as safety is required for ICSs. This new ISMS must be mutually exclusive of an ICS. This paper provides a new paradigm of ISMS for ICSs, which will be shown to be more suitable than the existing ISMS.
引用
收藏
页数:13
相关论文
共 50 条
  • [41] Reaching escape velocity: A practiced approach to information security management system implementation
    Bellone, Jason
    Information Management and Computer Security, 2008, 16 (01): : 49 - 57
  • [42] The Measurement Design of Information Security Management System
    Nancylia, Merry
    Mudjtabar, Eddy K.
    Sutikno, Sarwono
    Rosmansyah, Yusep
    2014 8TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATION SYSTEMS SERVICES AND APPLICATIONS (TSSA), 2014,
  • [43] The Design of Information Security Management System in College
    Li, Xinli
    INTERNATIONAL CONFERENCE ON EDUCATION & EDUCATIONAL RESEARCH AND ENVIRONMENTAL STUDIES (EERES 2016), 2016, : 49 - 52
  • [44] Building a Viable Information Security Management System
    Goldes, Sabine
    Schneider, Ralf
    Schweda, Christian M.
    Zamani, Jawed
    2017 3RD IEEE INTERNATIONAL CONFERENCE ON CYBERNETICS (CYBCONF), 2017, : 73 - 78
  • [45] An integrated system theory of information security management
    Hong, Kwo-Shing
    Chi, Yen-Ping
    Chao, Louis R.
    Tang, Jih-Hsing
    Information Management and Computer Security, 2003, 11 (05): : 243 - 248
  • [46] MONITORING AND MEASUREMENT OF INFORMATION SECURITY MANAGEMENT SYSTEM
    Drastich, Martin
    ZNALOSTI PRO TRZNI PRAXI 2013: VEREJNA EKONOMIKA - SOUCASNOST A PERSPEKTIVA: VEREJNA EKONOMIKA SOUCASNOST A PERSPEKTIVA. PUBLIC ECONOMY - PRESENT SITUATION AND FUTURE PROSPECTS, 2013, : 180 - 183
  • [47] Hospital Information System Management and Security Maintenance
    Wei, Xianmin
    COMPUTING AND INTELLIGENT SYSTEMS, PT IV, 2011, 234 : 418 - 421
  • [48] Information system security management in the new millennium
    Dhillon, G
    Backhouse, J
    COMMUNICATIONS OF THE ACM, 2000, 43 (07) : 125 - 128
  • [49] Constructiaon of Management System on the Enterprise Information Security
    Liu, Qiao-rong
    Kang, Xiao-juan
    MEMS, NANO AND SMART SYSTEMS, PTS 1-6, 2012, 403-408 : 2160 - 2163
  • [50] Improvement of Information System Security Risk Management
    Abbass, Wissam
    Baina, Amine
    Bellafkih, Mostafa
    2016 4TH IEEE INTERNATIONAL COLLOQUIUM ON INFORMATION SCIENCE AND TECHNOLOGY (CIST), 2016, : 182 - 187