A best practices-oriented approach for establishing trust chains within Virtual Organisations

M. Kamel, R. Laborde, A. Benzekri, F. Barrère
{"title":"A best practices-oriented approach for establishing trust chains within Virtual Organisations","authors":"M. Kamel, R. Laborde, A. Benzekri, F. Barrère","doi":"10.1109/EDOCW.2008.3","DOIUrl":null,"url":null,"abstract":"Within a virtual organisation collaborative environment, the organisations' security domains must be interconnected through Internet and information and communication technologies to allow these organisations to share data and exchange resources and competencies in a secure way. Each organisation must open its information system and thus, security concerns are raised when setting up collaboration. The partner organisations need to establish a chain of trust; they need to know the level of experience and maturity the administrators have regarding security issues. Security practices, security policies, Information Security Management Systems and security standards are the security management mechanisms adopted to offer to partners a way to quantify trust. In this paper, we detail our tool tailored to evaluate the maturity level of the security practices deployed within the organisations' information systems; this tool is based on the information security best practices provided by the ISO/IEC 17799 security standard which we have adapted to virtual organisations. Our tool is a support decision system providing the partner organisations by the means to choose the best solution for building the collaborative network.","PeriodicalId":205960,"journal":{"name":"2008 12th Enterprise Distributed Object Computing Conference Workshops","volume":"200 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2008-09-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"10","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2008 12th Enterprise Distributed Object Computing Conference Workshops","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/EDOCW.2008.3","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 10

Abstract

Within a virtual organisation collaborative environment, the organisations' security domains must be interconnected through Internet and information and communication technologies to allow these organisations to share data and exchange resources and competencies in a secure way. Each organisation must open its information system and thus, security concerns are raised when setting up collaboration. The partner organisations need to establish a chain of trust; they need to know the level of experience and maturity the administrators have regarding security issues. Security practices, security policies, Information Security Management Systems and security standards are the security management mechanisms adopted to offer to partners a way to quantify trust. In this paper, we detail our tool tailored to evaluate the maturity level of the security practices deployed within the organisations' information systems; this tool is based on the information security best practices provided by the ISO/IEC 17799 security standard which we have adapted to virtual organisations. Our tool is a support decision system providing the partner organisations by the means to choose the best solution for building the collaborative network.
在虚拟组织内建立信任链的面向最佳实践的方法
在虚拟组织协作环境中,组织的安全域必须通过互联网和信息通信技术相互连接,以允许这些组织以安全的方式共享数据、交换资源和能力。每个组织都必须开放其信息系统,因此,在建立协作时提出了安全问题。合作机构需要建立信任链;他们需要知道管理员在安全问题方面的经验和成熟度。安全实践、安全政策、信息安全管理系统和安全标准是为合作伙伴提供量化信任的安全管理机制。在本文中,我们详细介绍了我们量身定制的工具,用于评估组织信息系统中部署的安全实践的成熟度;此工具是基于ISO/IEC 17799资讯保安标准所提供的资讯保安最佳实务,而我们已将这些实务应用于虚拟机构。我们的工具是一个支持决策系统,为合作伙伴组织提供选择构建协作网络的最佳解决方案的手段。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信