Important of security governance, its dependence on other forms of governance, and its diverse application among industries

U. Shah
{"title":"Important of security governance, its dependence on other forms of governance, and its diverse application among industries","authors":"U. Shah","doi":"10.1145/2670739.2670742","DOIUrl":null,"url":null,"abstract":"This paper will discuss the different levels of governance and their relationship to each other---specific to information security. It will indicate the implications that corporate and IT governance have on security governance. The main priority of this paper will be to concentrate on three forms of governance that impact an organization---corporate governance, information technology governance, and information security governance. Specifically, how corporate and IT governance impact the success of information security governance. The paper will indicate the roles and goals of each form of governance and how they ultimately build to information security governance. It will also entail the methodologies used to implement good governance within an organization to understand how that impacts security governance. Upon reading this paper, the value and importance of governance will be visible. There is a varying degree of differences with the application and goals of security governance based on the industry---this will be discussed with an evaluation of four very different industries---the biotechnology, e-learning, healthcare, and the retail industry. Comparing such different industries will help to understand the wide range of variability involved in discovering the purpose and implementation of Information Security Governance.","PeriodicalId":331424,"journal":{"name":"Proceedings of the 2014 Information Security Curriculum Development Conference","volume":"9 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-10-11","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 2014 Information Security Curriculum Development Conference","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/2670739.2670742","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

This paper will discuss the different levels of governance and their relationship to each other---specific to information security. It will indicate the implications that corporate and IT governance have on security governance. The main priority of this paper will be to concentrate on three forms of governance that impact an organization---corporate governance, information technology governance, and information security governance. Specifically, how corporate and IT governance impact the success of information security governance. The paper will indicate the roles and goals of each form of governance and how they ultimately build to information security governance. It will also entail the methodologies used to implement good governance within an organization to understand how that impacts security governance. Upon reading this paper, the value and importance of governance will be visible. There is a varying degree of differences with the application and goals of security governance based on the industry---this will be discussed with an evaluation of four very different industries---the biotechnology, e-learning, healthcare, and the retail industry. Comparing such different industries will help to understand the wide range of variability involved in discovering the purpose and implementation of Information Security Governance.
安全治理的重要性,它对其他形式的治理的依赖,以及它在行业中的多样化应用
本文将讨论不同级别的治理及其相互之间的关系——具体到信息安全。它将指出公司和It治理对安全治理的影响。本文的主要重点将集中于影响组织的三种形式的治理——公司治理、信息技术治理和信息安全治理。具体来说,公司和IT治理如何影响信息安全治理的成功。本文将指出每种形式的治理的角色和目标,以及它们最终如何构建信息安全治理。它还将涉及用于在组织内实现良好治理的方法,以了解其如何影响安全治理。在阅读本文时,治理的价值和重要性将是可见的。基于行业的安全治理的应用和目标存在不同程度的差异——这将通过对四个非常不同的行业(生物技术、电子学习、医疗保健和零售行业)的评估来讨论。比较这些不同的行业将有助于理解发现信息安全治理的目的和实现所涉及的广泛的可变性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信