A conceptual framework of info structure for information security risk assessment (ISRA

Information security has become a vital entity to most organizations today due to current trends in information transfer through a borderless and vulnerable world. The concern and interest in information security is mainly due to the fact that information security risk assessment (ISRA) is a vital m...

Full description

Saved in:
Bibliographic Details
Main Authors: Palaniapan , Shamala, Rabiah, Ahmad, Mariana, Yusoff
Format: Article
Language:English
Published: 2013
Subjects:
Online Access:http://eprints.utem.edu.my/id/eprint/12085/1/FRGS_First_Publication.pdf
http://eprints.utem.edu.my/id/eprint/12085/
Tags: Add Tag
No Tags, Be the first to tag this record!
id my.utem.eprints.12085
record_format eprints
spelling my.utem.eprints.120852015-05-28T04:22:21Z http://eprints.utem.edu.my/id/eprint/12085/ A conceptual framework of info structure for information security risk assessment (ISRA Palaniapan , Shamala Rabiah, Ahmad Mariana, Yusoff QA75 Electronic computers. Computer science Information security has become a vital entity to most organizations today due to current trends in information transfer through a borderless and vulnerable world. The concern and interest in information security is mainly due to the fact that information security risk assessment (ISRA) is a vital method to not only to identify and prioritize information assets but also to identify and monitor the specific threats that an organization induces; especially the chances of these threats occurring and their impact on the respective businesses. However, organizations wanting to conduct risk assessment may face problems in selecting suitable methods that would augur well in meeting their needs. This is due to the existence of numerous methodologies that are readily available. However, there is a lack in agreed reference benchmarking as well as in the comparative framework for evaluating these ISRA methods to access the information security risk. Generally, organizations will choose the most appropriate ISRA method by carrying out a comparative study between the available methodologies in detail before a suitable method is selected to conduct the risk assessment. This paper suggests a conceptual framework of info-structure for ISRA that was developed by comparing and analysing six methodologies which are currently available. The info-structure for ISRA aims to assist organizations in getting a general view of ISRA flow, gathering information on the requirements to be met before risk assessment can be conducted successfully. This info-structure can be conveniently used by organizations to complete all the required planning as well as the selection of suitable methods to complete the ISRA. 2013-07-31 Article PeerReviewed application/pdf en http://eprints.utem.edu.my/id/eprint/12085/1/FRGS_First_Publication.pdf Palaniapan , Shamala and Rabiah, Ahmad and Mariana, Yusoff (2013) A conceptual framework of info structure for information security risk assessment (ISRA. Journal of Information security and applications. pp. 45-52. ISSN 22142216
institution Universiti Teknikal Malaysia Melaka
building UTEM Library
collection Institutional Repository
continent Asia
country Malaysia
content_provider Universiti Teknikal Malaysia Melaka
content_source UTEM Institutional Repository
url_provider http://eprints.utem.edu.my/
language English
topic QA75 Electronic computers. Computer science
spellingShingle QA75 Electronic computers. Computer science
Palaniapan , Shamala
Rabiah, Ahmad
Mariana, Yusoff
A conceptual framework of info structure for information security risk assessment (ISRA
description Information security has become a vital entity to most organizations today due to current trends in information transfer through a borderless and vulnerable world. The concern and interest in information security is mainly due to the fact that information security risk assessment (ISRA) is a vital method to not only to identify and prioritize information assets but also to identify and monitor the specific threats that an organization induces; especially the chances of these threats occurring and their impact on the respective businesses. However, organizations wanting to conduct risk assessment may face problems in selecting suitable methods that would augur well in meeting their needs. This is due to the existence of numerous methodologies that are readily available. However, there is a lack in agreed reference benchmarking as well as in the comparative framework for evaluating these ISRA methods to access the information security risk. Generally, organizations will choose the most appropriate ISRA method by carrying out a comparative study between the available methodologies in detail before a suitable method is selected to conduct the risk assessment. This paper suggests a conceptual framework of info-structure for ISRA that was developed by comparing and analysing six methodologies which are currently available. The info-structure for ISRA aims to assist organizations in getting a general view of ISRA flow, gathering information on the requirements to be met before risk assessment can be conducted successfully. This info-structure can be conveniently used by organizations to complete all the required planning as well as the selection of suitable methods to complete the ISRA.
format Article
author Palaniapan , Shamala
Rabiah, Ahmad
Mariana, Yusoff
author_facet Palaniapan , Shamala
Rabiah, Ahmad
Mariana, Yusoff
author_sort Palaniapan , Shamala
title A conceptual framework of info structure for information security risk assessment (ISRA
title_short A conceptual framework of info structure for information security risk assessment (ISRA
title_full A conceptual framework of info structure for information security risk assessment (ISRA
title_fullStr A conceptual framework of info structure for information security risk assessment (ISRA
title_full_unstemmed A conceptual framework of info structure for information security risk assessment (ISRA
title_sort conceptual framework of info structure for information security risk assessment (isra
publishDate 2013
url http://eprints.utem.edu.my/id/eprint/12085/1/FRGS_First_Publication.pdf
http://eprints.utem.edu.my/id/eprint/12085/
_version_ 1665905486530084864
score 13.211869