A Maturity Model for IT-Related Security Incident Management

被引:4
作者
Wahlgren, Gunnar [1 ]
Kowalski, Stewart [2 ]
机构
[1] Stockholm Univ, Dept Comp & Syst Sci, Stockholm, Sweden
[2] Norwegian Univ Sci & Technol, Gjovik Univ Coll, Fac Comp Sci & Media Technol, Gjovik, Norway
来源
BUSINESS INFORMATION SYSTEMS, PT I | 2019年 / 353卷
关键词
Incident escalation; Incident management; Maturity models; Self-assessment;
D O I
10.1007/978-3-030-20485-3_16
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The purpose of the study is to validate the ability of a maturity model for measuring escalation capability of IT-related security incident. First, an Escalation Maturity Model (EMM) and a tool were developed to measure the maturity of an organization to escalate IT-related security incidents. An IT tool for self-assessment was used by a representative from three organizations in the Swedish health sector to measure the organization's ability to escalate IT-related security incident. Second, typical security incident scenarios were created. The incident managers from the different organizations were interviewed about their organization's capabilities to deal with these scenarios. Third, a number of independent information security experts, none of whom had seen the results of EMM, ranked how the three different organizations have handled the different scenarios using a measurable scale. Finally, the results of EMM are compared against the measurable result of the interviews to establish the predictive ability of EMM. The findings of the proof of concept study shows that the outcome of EMM and the way in which an organization would handle different incidents correspond well, at least for organizations with low and medium maturity levels.
引用
收藏
页码:203 / 217
页数:15
相关论文
共 18 条
[1]  
Aguiar J., 2018, INTERDISC J INF KNOW, V13, P137
[2]  
[Anonymous], 2011, NIST SPECIAL PUBLICA, V800-145
[3]  
[Anonymous], 2011, ISO 27005
[4]  
[Anonymous], 2010, NIST SPECIAL PUBLICA, V800-22
[5]  
Brewster Ernest., 2012, IT Service Management - A Guide for ITIL Foundation Exam Candidates, V2a
[6]  
Humphrey W., 1987, METHOD ASSESSING SOF
[7]  
ISACA, 2009, The risk IT framework
[8]  
ISO, 2008, 155047 ISOIEC
[9]  
ISO-International Organization for Standardization, 2016, 27035 ISOIEC
[10]  
Kahn Herman., 1986, On Escalation: Metaphors and Scenarios