A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors

Organizations have different takes on Information Security Management Systems (ISMS) since security measurements vary according to their business relevance. One way to assure ISMS is being well-implemented is by having a standard compliance such as the ISO 27000 series. The ISO 27000 series is a fam...

Full description

Saved in:
Bibliographic Details
Main Authors: Hamdi, Zaidatulnajla, Norman, Azah Anir, Abdul Molok, Nurul Nuha, Hassandoust, Farkhondeh
Format: Conference or Workshop Item
Language:English
Published: Institute of Physics Publishing 2019
Subjects:
Online Access:http://irep.iium.edu.my/86510/1/86510_Comparative%20review.pdf
http://irep.iium.edu.my/86510/
https://iopscience.iop.org/article/10.1088/1742-6596/1339/1/012103/pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.iium.irep.86510
record_format dspace
spelling my.iium.irep.865102020-12-17T03:38:10Z http://irep.iium.edu.my/86510/ A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors Hamdi, Zaidatulnajla Norman, Azah Anir Abdul Molok, Nurul Nuha Hassandoust, Farkhondeh T58.6 Management information systems Organizations have different takes on Information Security Management Systems (ISMS) since security measurements vary according to their business relevance. One way to assure ISMS is being well-implemented is by having a standard compliance such as the ISO 27000 series. The ISO 27000 series is a family of standards that provides a framework for best practice ISMS that helps organizations keep their information assets secure. This paper intends to seek how organizations in different business sectors implement ISMS in their practices. By identifying which organization attains a higher number of ISO requirements, it is anticipated that the characteristics that increase the chances of an organization being certified can be distinguished. This paper reviews case studies regarding the ISMS implementation based on ISO 27000 series between organizations in different business sectors. The result of this paper presents the state of ISO compliance of the organizations. The findings also discussed the characteristics of organizations that are applicable for certification. Through the findings, it is found that the organization, which fulfilled the highest number of ISO requirement, has a stronger possibility of being certified. However, ISO standards should be more dynamic to support diverse business environment thus avoiding generalization to get compliance. Institute of Physics Publishing 2019-12-16 Conference or Workshop Item PeerReviewed application/pdf en http://irep.iium.edu.my/86510/1/86510_Comparative%20review.pdf Hamdi, Zaidatulnajla and Norman, Azah Anir and Abdul Molok, Nurul Nuha and Hassandoust, Farkhondeh (2019) A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors. In: 1st International Conference Computer Science and Engineering (IC2SE 2019), 26 Apr.-27-Apr.2019, Padang, Indonesia. https://iopscience.iop.org/article/10.1088/1742-6596/1339/1/012103/pdf 10.1088/1742-6596/1339/1/012103
institution Universiti Islam Antarabangsa Malaysia
building IIUM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider International Islamic University Malaysia
content_source IIUM Repository (IREP)
url_provider http://irep.iium.edu.my/
language English
topic T58.6 Management information systems
spellingShingle T58.6 Management information systems
Hamdi, Zaidatulnajla
Norman, Azah Anir
Abdul Molok, Nurul Nuha
Hassandoust, Farkhondeh
A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors
description Organizations have different takes on Information Security Management Systems (ISMS) since security measurements vary according to their business relevance. One way to assure ISMS is being well-implemented is by having a standard compliance such as the ISO 27000 series. The ISO 27000 series is a family of standards that provides a framework for best practice ISMS that helps organizations keep their information assets secure. This paper intends to seek how organizations in different business sectors implement ISMS in their practices. By identifying which organization attains a higher number of ISO requirements, it is anticipated that the characteristics that increase the chances of an organization being certified can be distinguished. This paper reviews case studies regarding the ISMS implementation based on ISO 27000 series between organizations in different business sectors. The result of this paper presents the state of ISO compliance of the organizations. The findings also discussed the characteristics of organizations that are applicable for certification. Through the findings, it is found that the organization, which fulfilled the highest number of ISO requirement, has a stronger possibility of being certified. However, ISO standards should be more dynamic to support diverse business environment thus avoiding generalization to get compliance.
format Conference or Workshop Item
author Hamdi, Zaidatulnajla
Norman, Azah Anir
Abdul Molok, Nurul Nuha
Hassandoust, Farkhondeh
author_facet Hamdi, Zaidatulnajla
Norman, Azah Anir
Abdul Molok, Nurul Nuha
Hassandoust, Farkhondeh
author_sort Hamdi, Zaidatulnajla
title A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors
title_short A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors
title_full A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors
title_fullStr A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors
title_full_unstemmed A comparative review of ISMS implementation based on ISO 27000 series in organizations of different business sectors
title_sort comparative review of isms implementation based on iso 27000 series in organizations of different business sectors
publisher Institute of Physics Publishing
publishDate 2019
url http://irep.iium.edu.my/86510/1/86510_Comparative%20review.pdf
http://irep.iium.edu.my/86510/
https://iopscience.iop.org/article/10.1088/1742-6596/1339/1/012103/pdf
_version_ 1687393163208032256
score 13.160551