3.8 Article

Organization Security Metrics: Can Organizations Protect Themselves?

期刊

INFORMATION SECURITY JOURNAL
卷 17, 期 5-6, 页码 228-242

出版社

TAYLOR & FRANCIS INC
DOI: 10.1080/19393550802541200

关键词

information security and risk management; operations security; physical (environmental) security; risk matrix; security monitoring; security working group; threat assessment

向作者/读者索取更多资源

Organizations normally do not possess a way to communicate those needs back to the rest of an organization. This paper demonstrates that organizations are vigilant to activity within their environment, so this research project will focus on process improvement to better organizations through internal processes. Prior to this project, Company X was unable to communicate and address threats to their organization. Prior to this project, each employee was not trained on security. However, each employee understood the norms and values of company processes on an individual level. Each employee was able to contribute details of security issues as they perceived them to make a comprehensive security model. This Security Working Group (SWG) project describes the steps necessary to create a self-educating, self-perpetuating process that spurns co-generative learning among an entire organization. Security training prepared each employee to be more attentive to risks to potential security issues. The result of this research proves that employees can detect threats in an organization with relatively little training.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

3.8
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据