{"title":"ISO 27001:2013标准在高校图书馆的实施:以梅鲁科技大学为例","authors":"Ruth Gibendi, E. Walubuka, Paul Mutethia","doi":"10.58506/ajstss.v1i1.60","DOIUrl":null,"url":null,"abstract":"Academic libraries are often considered the ‘heart’ of academic institutions. They are charged with provision of a range of resources, services, tools and software that are increasingly made available online. With information as the key resource under its responsibility, information security is a pertinent component to assure its confidentiality, integrity and availability. This paper describes the process of implementing the ISO 27001:2013 Information Security Standard for the library system of Meru University of Science and Technology. Theoretical models in information security in the library are examined. Next, details of the approach undertaken in meeting the requirements of the standard are discussed. The benefits gained and challenges that were faced are presented The lessons gained herein will assist similar institutions seeking to get certified using this standard.","PeriodicalId":440319,"journal":{"name":"African Journal of Science, Technology and Social Sciences","volume":"137 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-09-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Implementation of the ISO 27001:2013 standard in an academic library: case of Meru University of Science and Technology\",\"authors\":\"Ruth Gibendi, E. Walubuka, Paul Mutethia\",\"doi\":\"10.58506/ajstss.v1i1.60\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Academic libraries are often considered the ‘heart’ of academic institutions. They are charged with provision of a range of resources, services, tools and software that are increasingly made available online. With information as the key resource under its responsibility, information security is a pertinent component to assure its confidentiality, integrity and availability. This paper describes the process of implementing the ISO 27001:2013 Information Security Standard for the library system of Meru University of Science and Technology. Theoretical models in information security in the library are examined. Next, details of the approach undertaken in meeting the requirements of the standard are discussed. The benefits gained and challenges that were faced are presented The lessons gained herein will assist similar institutions seeking to get certified using this standard.\",\"PeriodicalId\":440319,\"journal\":{\"name\":\"African Journal of Science, Technology and Social Sciences\",\"volume\":\"137 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2022-09-26\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"African Journal of Science, Technology and Social Sciences\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.58506/ajstss.v1i1.60\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"African Journal of Science, Technology and Social Sciences","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.58506/ajstss.v1i1.60","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Implementation of the ISO 27001:2013 standard in an academic library: case of Meru University of Science and Technology
Academic libraries are often considered the ‘heart’ of academic institutions. They are charged with provision of a range of resources, services, tools and software that are increasingly made available online. With information as the key resource under its responsibility, information security is a pertinent component to assure its confidentiality, integrity and availability. This paper describes the process of implementing the ISO 27001:2013 Information Security Standard for the library system of Meru University of Science and Technology. Theoretical models in information security in the library are examined. Next, details of the approach undertaken in meeting the requirements of the standard are discussed. The benefits gained and challenges that were faced are presented The lessons gained herein will assist similar institutions seeking to get certified using this standard.