Information security management has been placed on a firmer footing with the publication of standards by national bodies. These standards provide an opportunity for security managers to gain senior management recognition of the importance of procedures and mechanisms to enhance information security. They may also place demands on security managers to provide convincing demonstration of conformance to the standards. The risk data repository (RDR) computer model described in this paper was developed to manage organisational information security data and facilitate risk analysis studies. The RDR provides a form of computer documentation that can assist the security officer to maintain a continuous record of the organisational information security scenario and facilitate system security development, business continuity planning and standards conformance audits.
Article navigation
1 March 1999
This article was originally published in
Information Management & Computer Security
Research Article|
March 01 1999
Information security management and modelling
Lam‐for Kwok;
Lam‐for Kwok
City University of Hong Kong, Department of Computer Science, Kowloon, Hong Kong
Search for other works by this author on:
Dennis Longley
Dennis Longley
Information Security Research Centre, Queensland University of Technology, Brisbane, Queensland, Australia
Search for other works by this author on:
Publisher: Emerald Publishing
Online ISSN: 1758-5805
Print ISSN: 0968-5227
© MCB UP Limited
1999
Information Management & Computer Security (1999) 7 (1): 30–40.
Citation
Kwok L, Longley D (1999), "Information security management and modelling". Information Management & Computer Security, Vol. 7 No. 1 pp. 30–40, doi: https://doi.org/10.1108/09685229910255179
Download citation file:
640
Views
New and popular articles
Suggested Reading
Enterprise security architecture in business convergence environments
Industrial Management & Data Systems (September,2005)
A security evaluation criteria
Logistics Information Management (December,2002)
Reaching escape velocity: A practiced approach to information security management system implementation
Information Management & Computer Security (March,2008)
Industrial information‐weight security models
Information Management & Computer Security (December,1998)
Information security management: why standards are important
Information Management & Computer Security (March,1999)
Related Chapters
Exploring Novice Teachers’ Core Competencies
Promoting and Sustaining a Quality Teacher Workforce
Measuring Success in Tech-Driven Decision Making
Decision Making with Exponential Technologies for Leaders
Cloud Computing Application for Data Management of E-government in Public Sector Services of Special Region of Yogyakarta
Innovate to Integrate: Data-driven Management and TechStrat Fusion Unveiled
Recommended for you
These recommendations are informed by your reading behaviors and indicated interests.
