Exploring the Suitability of IS Security Management Standards for SMEs

作者: Yves Barlette , Vladislav V. Fomin

DOI: 10.1109/HICSS.2008.167

关键词:

摘要: In this paper we examine the adequacy of IS security standards to needs SMEs. Using findings literature review, identify general criticism for standards. Further, benchmark recently published ISO 27001 standard 9000 - a similar with 20 years history develop expectations how future adoption introduced can be fostered. We suggest, among other, that legislative environment play crucial role further growth adoption.

参考文章(52)
Leonid Smalov, David Chapman, ON INFORMATION SECURITY GUIDELINES FOR SMALL/MEDIUM ENTERPRISES international conference on enterprise information systems. pp. 3- 9 ,(2004)
Thomas Schlienger, Stephanie Teufel, Information security culture - from analysis to change. South African Computer Journal. ,vol. 31, pp. 46- 52 ,(2003)
Rossouw Von Solms, Helen Van De Haar, From Trusted Information Security Controls to a Trusted Information Security Environment information security. pp. 29- 36 ,(2000) , 10.1007/978-0-387-35515-3_4
Barry Moule, Lina Giavara, Policies, procedures and standards: an approach for implementation Information Management & Computer Security. ,vol. 3, pp. 7- 16 ,(1995) , 10.1108/09685229510092057
F. Franceschini, M. Galetto, P. Cecconi, A worldwide analysis of ISO 9000 standard diffusion Benchmarking: An International Journal. ,vol. 13, pp. 523- 541 ,(2006) , 10.1108/14635770610676326