Implementation of information security and data processing center protection standards

P. Lontsikh, Viktoria A. Karaseva, E. Kunakov, I. I. Livshitz, Ksenia A. Nikiforova
{"title":"Implementation of information security and data processing center protection standards","authors":"P. Lontsikh, Viktoria A. Karaseva, E. Kunakov, I. I. Livshitz, Ksenia A. Nikiforova","doi":"10.1109/ITMQIS.2016.7751923","DOIUrl":null,"url":null,"abstract":"The article deals with the issue of information security. The purpose of the research is to analyze information security procedures, development information security systems and implementation of international information security standards. Information security involves both storing and accessing sensitive information and data warehousing. It can be carried out with Data Processing Centers. A number of standards were developed to improve efficiency of information security departments. One of them is ISO/IEC 27001. It involves requirements to information security management systems which are obligatory for certification. Along with management elements for computers and networks, ISO/IEC 27001 specifies the issues of security policy development, staff relations. Processed information security is one of the crucial issues when creating new data processing centers. Accordingly, reliability and fault-tolerance of data centers in the Uptime Institute's Tier Classification System are paid special attention to. Operational Sustainability is an additional characteristics to asses DPC's performance. Advantage of the standard is due to the flexibility of its requirements which enable objective evaluation of DPC's performance at the design stage and comparison of the current performance. Data centers can be awarded with Tier 1 to 4 depending upon the degree of reliability. Tiers is progressive: each Tier incorporates the requirements of all the lower Tiers. The Uptime Institute also developed Tier Standard: Topology and Tier Standard: Operational Sustainability which specify the methods of DPC performance evaluation. The article analyzes the key points of these standards, their advantages and implementation experience in Russian organizations.","PeriodicalId":330739,"journal":{"name":"2016 IEEE Conference on Quality Management, Transport and Information Security, Information Technologies (IT&MQ&IS)","volume":"40 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 IEEE Conference on Quality Management, Transport and Information Security, Information Technologies (IT&MQ&IS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ITMQIS.2016.7751923","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 4

Abstract

The article deals with the issue of information security. The purpose of the research is to analyze information security procedures, development information security systems and implementation of international information security standards. Information security involves both storing and accessing sensitive information and data warehousing. It can be carried out with Data Processing Centers. A number of standards were developed to improve efficiency of information security departments. One of them is ISO/IEC 27001. It involves requirements to information security management systems which are obligatory for certification. Along with management elements for computers and networks, ISO/IEC 27001 specifies the issues of security policy development, staff relations. Processed information security is one of the crucial issues when creating new data processing centers. Accordingly, reliability and fault-tolerance of data centers in the Uptime Institute's Tier Classification System are paid special attention to. Operational Sustainability is an additional characteristics to asses DPC's performance. Advantage of the standard is due to the flexibility of its requirements which enable objective evaluation of DPC's performance at the design stage and comparison of the current performance. Data centers can be awarded with Tier 1 to 4 depending upon the degree of reliability. Tiers is progressive: each Tier incorporates the requirements of all the lower Tiers. The Uptime Institute also developed Tier Standard: Topology and Tier Standard: Operational Sustainability which specify the methods of DPC performance evaluation. The article analyzes the key points of these standards, their advantages and implementation experience in Russian organizations.
实施信息安全和数据处理中心保护标准
这篇文章讨论的是信息安全问题。研究的目的是分析信息安全程序,开发信息安全系统和国际信息安全标准的实施。信息安全包括存储和访问敏感信息和数据仓库。它可以通过数据处理中心来实现。制定了一系列标准,提高信息安全部门的工作效率。其中之一是ISO/IEC 27001。它涉及对信息安全管理体系的要求,这些要求是认证的强制性要求。除了电脑和网络的管理要素外,ISO/IEC 27001还规定了安全政策发展、员工关系等问题。处理后的信息安全是新建数据处理中心的关键问题之一。因此,在Uptime Institute的分级系统中,数据中心的可靠性和容错性受到了特别的关注。运营可持续性是评估DPC绩效的另一个特征。该标准的优点在于其要求的灵活性,可以在设计阶段对DPC的性能进行客观评价,并对当前性能进行比较。根据可靠性的不同,数据中心可以被授予1到4级。层是渐进的:每个层包含所有较低层的要求。Uptime Institute还制定了Tier Standard: Topology和Tier Standard: Operational Sustainability,这两个标准规定了DPC性能评估的方法。本文分析了这些标准的要点、优点和在俄罗斯组织中的实施经验。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信