Dynamic Cybersecurity Model based on ISO standards for Higher Education Institutions in Colombia

IF 0.4 Q4 ENGINEERING, MULTIDISCIPLINARY
María Alejandra Varona Taborda
{"title":"Dynamic Cybersecurity Model based on ISO standards for Higher Education Institutions in Colombia","authors":"María Alejandra Varona Taborda","doi":"10.16925/2357-6014.2021.03.05","DOIUrl":null,"url":null,"abstract":"Introduction: This article is the result of a research process whose product was to generate a guide for Higher Education Institutions (in Spanish, IES) to adopt a Cybersecurity Model based on ISO standards (International Organization for Standardization). \nProblem: IES do not have a cybersecurity model aligned to the ISO / IEC 27032: 2012 standard (International Organization for Standardization / International Electrotechnical Commission), which causes a lack of clarity and uncertainty in the level of maturity and low efficiency in processes and information security controls to be implemented. \nObjective: Propose a dynamic model of cybersecurity based on ISO standards for IES. \nMethodology: The development of this work was oriented under a line of applied research, by virtue of the fact that it was necessary to address the problem based on previous knowledge that allowed supporting the theoretical contributions and the activities proposed to determine the possible causes of the problem and give it a possible solution. \nResults: The generation of this dynamic model allows it to be adapted to the different needs and requirements of IES. \nConclusion: IES can implement a cybersecurity model to prevent and protect information at the cyberspace level. \nOriginality: The work carried out generates a great contribution, which is the generation of a dynamic cybersecurity model, since at present there are no specific models for IES. \nLimitations: The model implementation guide is established in a general way to be applied later to an organization in any sector. \nKeywords: Dynamic Cybersecurity Model, Higher Education Institutions, ISO/IEC 27032: 2012, Security Standards.","PeriodicalId":41023,"journal":{"name":"Ingenieria Solidaria","volume":" ","pages":""},"PeriodicalIF":0.4000,"publicationDate":"2021-09-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Ingenieria Solidaria","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.16925/2357-6014.2021.03.05","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q4","JCRName":"ENGINEERING, MULTIDISCIPLINARY","Score":null,"Total":0}
引用次数: 0

Abstract

Introduction: This article is the result of a research process whose product was to generate a guide for Higher Education Institutions (in Spanish, IES) to adopt a Cybersecurity Model based on ISO standards (International Organization for Standardization). Problem: IES do not have a cybersecurity model aligned to the ISO / IEC 27032: 2012 standard (International Organization for Standardization / International Electrotechnical Commission), which causes a lack of clarity and uncertainty in the level of maturity and low efficiency in processes and information security controls to be implemented. Objective: Propose a dynamic model of cybersecurity based on ISO standards for IES. Methodology: The development of this work was oriented under a line of applied research, by virtue of the fact that it was necessary to address the problem based on previous knowledge that allowed supporting the theoretical contributions and the activities proposed to determine the possible causes of the problem and give it a possible solution. Results: The generation of this dynamic model allows it to be adapted to the different needs and requirements of IES. Conclusion: IES can implement a cybersecurity model to prevent and protect information at the cyberspace level. Originality: The work carried out generates a great contribution, which is the generation of a dynamic cybersecurity model, since at present there are no specific models for IES. Limitations: The model implementation guide is established in a general way to be applied later to an organization in any sector. Keywords: Dynamic Cybersecurity Model, Higher Education Institutions, ISO/IEC 27032: 2012, Security Standards.
基于ISO标准的哥伦比亚高等教育机构动态网络安全模型
引言:本文是一个研究过程的结果,其产品旨在为高等教育机构(西班牙语,IES)制定一份指南,以采用基于ISO标准(国际标准化组织)的网络安全模型。问题:IES没有符合ISO/IEC 27032:2012标准(国际标准化组织/国际电工委员会)的网络安全模型,这导致成熟度缺乏明确性和不确定性,实施过程和信息安全控制的效率低下。目的:为IES提出一个基于ISO标准的网络安全动态模型。方法论:这项工作的发展是在应用研究的指导下进行的,因为有必要根据以前的知识来解决这个问题,这些知识可以支持理论贡献和活动,以确定问题的可能原因并给出可能的解决方案。结果:该动态模型的生成使其能够适应IES的不同需求和要求。结论:IES可以实现网络安全模型,在网络空间层面预防和保护信息。独创性:所开展的工作产生了巨大的贡献,即生成了动态网络安全模型,因为目前还没有IES的具体模型。限制:模型实施指南是以通用的方式制定的,稍后将应用于任何部门的组织。关键词:动态网络安全模型,高等教育机构,ISO/IEC 27032:2012,安全标准。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
Ingenieria Solidaria
Ingenieria Solidaria ENGINEERING, MULTIDISCIPLINARY-
自引率
0.00%
发文量
10
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信