Agile approach with Kanban in information security risk management

V. Dorca, R. Munteanu, S. Popescu, A. Chioreanu, Claudius A. Peleskei
{"title":"Agile approach with Kanban in information security risk management","authors":"V. Dorca, R. Munteanu, S. Popescu, A. Chioreanu, Claudius A. Peleskei","doi":"10.1109/AQTR.2016.7501278","DOIUrl":null,"url":null,"abstract":"In an ever changing business environment, in order to bring value, security risk management must keep engaged at pace with the company, by following the enterprise goals and using the same methodologies as core business units. This paper analyses how information security risk management can be automated and interlinked with the processes in a software development company, using an Agile approach with Kanban. The methodology used has been tested (Proof of Concept) applying relevant information security risks for an e-commerce business, the results showing an increase in efficiency of the risk management team, better business response and improvements of the defined risk management SLAs (Service Level Agreement).","PeriodicalId":110627,"journal":{"name":"2016 IEEE International Conference on Automation, Quality and Testing, Robotics (AQTR)","volume":"33 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-05-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"13","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 IEEE International Conference on Automation, Quality and Testing, Robotics (AQTR)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/AQTR.2016.7501278","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 13

Abstract

In an ever changing business environment, in order to bring value, security risk management must keep engaged at pace with the company, by following the enterprise goals and using the same methodologies as core business units. This paper analyses how information security risk management can be automated and interlinked with the processes in a software development company, using an Agile approach with Kanban. The methodology used has been tested (Proof of Concept) applying relevant information security risks for an e-commerce business, the results showing an increase in efficiency of the risk management team, better business response and improvements of the defined risk management SLAs (Service Level Agreement).
信息安全风险管理中的敏捷看板方法
在不断变化的业务环境中,为了带来价值,安全风险管理必须与公司保持同步,遵循企业目标并使用与核心业务单位相同的方法。本文分析了在软件开发公司中,如何使用带有看板的敏捷方法实现信息安全风险管理的自动化,并与流程相互关联。所使用的方法已经在电子商务业务的相关信息安全风险中进行了测试(概念验证),结果显示风险管理团队的效率有所提高,业务响应更好,并改进了已定义的风险管理sla(服务水平协议)。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信