通过元建模方法管理信息安全知识

Doaa Saleh Abobakr Baras, S. H. Othman, M. Ahmad, Norafida Ithnin
{"title":"通过元建模方法管理信息安全知识","authors":"Doaa Saleh Abobakr Baras, S. H. Othman, M. Ahmad, Norafida Ithnin","doi":"10.1109/ISBAST.2014.7013140","DOIUrl":null,"url":null,"abstract":"Security of information systems is becomes a major concern for many organizations nowadays as security risks may have a serious impact on the organization's information assets. Information Security Management (ISM) describes controls that an organization needs to implement to ensure that it is sensibly managing the risks of loss, misuse, disclosure or damage. Thus, it makes ISM knowledge domain is so complex to both its modeling and sharing. The current ISM models do not provide an apparent structure that can be easily reuse to the current situation without an analysis in -depth and this could lead to a waste of time. It is useful to categories and describes the elements, components or aspects of information security management in a unified conceptual model (metamodel) to facilitate knowledge sharing, reuse, modelling and enhancing the communications amongst ISM users. For this purpose, we proposed the Information Security Management Metamodel (ISMM).","PeriodicalId":292333,"journal":{"name":"2014 International Symposium on Biometrics and Security Technologies (ISBAST)","volume":"41 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-08-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"Towards managing information security knowledge through metamodelling approach\",\"authors\":\"Doaa Saleh Abobakr Baras, S. H. Othman, M. Ahmad, Norafida Ithnin\",\"doi\":\"10.1109/ISBAST.2014.7013140\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Security of information systems is becomes a major concern for many organizations nowadays as security risks may have a serious impact on the organization's information assets. Information Security Management (ISM) describes controls that an organization needs to implement to ensure that it is sensibly managing the risks of loss, misuse, disclosure or damage. Thus, it makes ISM knowledge domain is so complex to both its modeling and sharing. The current ISM models do not provide an apparent structure that can be easily reuse to the current situation without an analysis in -depth and this could lead to a waste of time. It is useful to categories and describes the elements, components or aspects of information security management in a unified conceptual model (metamodel) to facilitate knowledge sharing, reuse, modelling and enhancing the communications amongst ISM users. For this purpose, we proposed the Information Security Management Metamodel (ISMM).\",\"PeriodicalId\":292333,\"journal\":{\"name\":\"2014 International Symposium on Biometrics and Security Technologies (ISBAST)\",\"volume\":\"41 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2014-08-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2014 International Symposium on Biometrics and Security Technologies (ISBAST)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ISBAST.2014.7013140\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2014 International Symposium on Biometrics and Security Technologies (ISBAST)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISBAST.2014.7013140","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

摘要

信息系统的安全性已成为当今许多组织关注的主要问题,因为安全风险可能对组织的信息资产产生严重影响。信息安全管理(ISM)描述了组织需要实施的控制措施,以确保合理地管理丢失、误用、泄露或损坏的风险。这使得ISM知识领域的建模和共享都变得非常复杂。当前的ISM模型没有提供一个明显的结构,如果没有深入的分析,可以很容易地重用到当前的情况,这可能会导致浪费时间。以统一的概念模型(元模型)对资讯保安管理的元素、组件或各方面进行分类和描述,有助资讯保安管理系统用户之间的知识共享、重用、建模和沟通。为此,我们提出了信息安全管理元模型(ISMM)。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Towards managing information security knowledge through metamodelling approach
Security of information systems is becomes a major concern for many organizations nowadays as security risks may have a serious impact on the organization's information assets. Information Security Management (ISM) describes controls that an organization needs to implement to ensure that it is sensibly managing the risks of loss, misuse, disclosure or damage. Thus, it makes ISM knowledge domain is so complex to both its modeling and sharing. The current ISM models do not provide an apparent structure that can be easily reuse to the current situation without an analysis in -depth and this could lead to a waste of time. It is useful to categories and describes the elements, components or aspects of information security management in a unified conceptual model (metamodel) to facilitate knowledge sharing, reuse, modelling and enhancing the communications amongst ISM users. For this purpose, we proposed the Information Security Management Metamodel (ISMM).
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信