loading
Papers

Research.Publish.Connect.

Paper

Paper Unlock

Authors: Daria Stepanova ; Simon E. Parkin and Aad van Moorsel

Affiliation: Newcastle University, United Kingdom

ISBN: 978-989-674-010-8

Keyword(s): Information security, Ontology, Knowledge base, Human-behavioural factors.

Related Ontology Subjects/Areas/Topics: Artificial Intelligence ; Cloud Computing ; Data Engineering ; Decision Support Systems ; Enterprise Information Systems ; Enterprise Software Technologies ; Information Systems Analysis and Specification ; Knowledge Engineering and Ontology Development ; Knowledge-Based Systems ; Ontologies and the Semantic Web ; Ontology Engineering ; Semantic Web Technologies ; Services Science ; Software Agents and Internet Computing ; Software Engineering ; Symbolic Systems

Abstract: The majority of modern-day companies store commercially sensitive and valuable information assets in digital form. It is essential for the Chief Information Security Officer (CISO) within an organisation to ensure that such information is adequately protected. External standards exist to advise CISOs on how to secure information, but these are essentially ``one-size-fits-all''. Furthermore they do not consider the human-behavioural aspects that determine the impact of security controls upon employees, or how security controls can be best deployed to manage insecure employee behaviour. CISOs require more information than they are currently provided with to justify their information security management decisions. Here we present a knowledge base and accompanying user interface. The knowledge base represents key structural components of the ISO27002 security standard, formally relating them to one another. This empowers CISOs to understand how different security measures impact upon ea ch other. It also considers how human-behavioural factors can be associated with these concepts. The accompanying user interface provides a means to present formalised information security concepts to CISOs. This paper describes the development of the knowledge base and user interface, highlighting and discussing key challenges and how they were resolved. (More)

PDF ImageFull Text

Download
CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.233.226.151

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Stepanova D.; Parkin S.; Moorsel A. and (2009). A KNOWLEDGE BASE FOR JUSTIFIED INFORMATION SECURITY DECISION-MAKING.In Proceedings of the 4th International Conference on Software and Data Technologies - Volume 2: ICSOFT, ISBN 978-989-674-010-8, pages 326-331. DOI: 10.5220/0002256703260331

@conference{icsoft09,
author={Daria Stepanova and Simon E. Parkin and Aad van Moorsel},
title={A KNOWLEDGE BASE FOR JUSTIFIED INFORMATION SECURITY DECISION-MAKING},
booktitle={Proceedings of the 4th International Conference on Software and Data Technologies - Volume 2: ICSOFT,},
year={2009},
pages={326-331},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0002256703260331},
isbn={978-989-674-010-8},
}

TY - CONF

JO - Proceedings of the 4th International Conference on Software and Data Technologies - Volume 2: ICSOFT,
TI - A KNOWLEDGE BASE FOR JUSTIFIED INFORMATION SECURITY DECISION-MAKING
SN - 978-989-674-010-8
AU - Stepanova, D.
AU - Parkin, S.
AU - Moorsel, A.
PY - 2009
SP - 326
EP - 331
DO - 10.5220/0002256703260331

Login or register to post comments.

Comments on this Paper: Be the first to review this paper.