脆弱性风险因素评估:关键ICT外包项目特征

Nik Zulkarnaen Bin Khidzir, A. Mohamed, N. Arshad
{"title":"脆弱性风险因素评估:关键ICT外包项目特征","authors":"Nik Zulkarnaen Bin Khidzir, A. Mohamed, N. Arshad","doi":"10.1109/WICT.2014.7076901","DOIUrl":null,"url":null,"abstract":"Business Strategist and Technologist Implementers realized that ICT Outsourcing was one of the most successful strategies for ICT operational cost cutting and solved the shortage of ICT expertise or resources to implement an ICT project and services. Unfortunately, the strategy cause's other significant risks that could interrupt the ICT outsourcing venture's success. Information Security Risk (ISR) was considered among the critical significant risk in ICT Outsourcing project. Therefore the objective of this study is to explore the information security Vulnerabilities Risks Factor (VRF) critical level for ICT Outsourcing project characteristics through exploratory analysis approach. About 300 government agencies and private companies from various industries in Malaysia involved in the survey. However, 36% response was analyzed as a sample for the study population. Thus, Vulnerability Risks Factor (VRF) critical level was analyzed and discussed for each common ICT Outsourcing project characteristics implemented in Malaysia. The results of the analysis discovered the evidence of those ICT outsourcing project characteristics, risks exploited through Vulnerabilities Risks Factor (VRF). Several highly critical ICT outsourcing project characteristics were project team size between 10 to 99 members (33.6%), medium size project (28.2%) and outsource the ICT project to more than one service provider. The findings could be used as an indicator for organizations to prepare more effective information security management plan for ICT Outsourcing project. Eventually, the organization could give more priority to the specific ICT Outsourcing project characteristic where the Vulnerability Risks Factor (VRF) level is critical.","PeriodicalId":439852,"journal":{"name":"2014 4th World Congress on Information and Communication Technologies (WICT 2014)","volume":"4 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-04-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"Evaluation of Vulnerability Risk Factor: Critical ICT Outsourcing project characteristics\",\"authors\":\"Nik Zulkarnaen Bin Khidzir, A. Mohamed, N. Arshad\",\"doi\":\"10.1109/WICT.2014.7076901\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Business Strategist and Technologist Implementers realized that ICT Outsourcing was one of the most successful strategies for ICT operational cost cutting and solved the shortage of ICT expertise or resources to implement an ICT project and services. Unfortunately, the strategy cause's other significant risks that could interrupt the ICT outsourcing venture's success. Information Security Risk (ISR) was considered among the critical significant risk in ICT Outsourcing project. Therefore the objective of this study is to explore the information security Vulnerabilities Risks Factor (VRF) critical level for ICT Outsourcing project characteristics through exploratory analysis approach. About 300 government agencies and private companies from various industries in Malaysia involved in the survey. However, 36% response was analyzed as a sample for the study population. Thus, Vulnerability Risks Factor (VRF) critical level was analyzed and discussed for each common ICT Outsourcing project characteristics implemented in Malaysia. The results of the analysis discovered the evidence of those ICT outsourcing project characteristics, risks exploited through Vulnerabilities Risks Factor (VRF). Several highly critical ICT outsourcing project characteristics were project team size between 10 to 99 members (33.6%), medium size project (28.2%) and outsource the ICT project to more than one service provider. The findings could be used as an indicator for organizations to prepare more effective information security management plan for ICT Outsourcing project. Eventually, the organization could give more priority to the specific ICT Outsourcing project characteristic where the Vulnerability Risks Factor (VRF) level is critical.\",\"PeriodicalId\":439852,\"journal\":{\"name\":\"2014 4th World Congress on Information and Communication Technologies (WICT 2014)\",\"volume\":\"4 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2014-04-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2014 4th World Congress on Information and Communication Technologies (WICT 2014)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/WICT.2014.7076901\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2014 4th World Congress on Information and Communication Technologies (WICT 2014)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/WICT.2014.7076901","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

摘要

业务战略家和技术专家实施者认识到,资讯及通讯科技外判是削减资讯及通讯科技运作成本的最成功策略之一,并解决了推行资讯及通讯科技项目和服务所需的资讯及通讯科技专业知识或资源短缺的问题。不幸的是,该战略引发了其他重大风险,这些风险可能会中断ICT外包企业的成功。信息安全风险(ISR)被认为是信息通信技术外包项目的关键重大风险之一。因此,本研究的目的是通过探索性分析方法探讨信息安全漏洞风险因子(VRF)临界水平对ICT外包项目特征的影响。来自马来西亚各行各业的约300家政府机构和私营公司参与了此次调查。然而,36%的应答作为研究人群的样本进行了分析。因此,针对马来西亚实施的每个常见ICT外包项目特征,分析和讨论了脆弱性风险因素(VRF)临界水平。分析结果发现了ICT外包项目特征的证据,通过漏洞风险因子(VRF)挖掘风险。几个非常关键的ICT外包项目特征是项目团队规模在10到99人之间(33.6%),中等规模的项目(28.2%),以及将ICT项目外包给多个服务提供商。研究结果可作为组织为ICT外包项目制定更有效的信息安全管理计划的指标。最终,组织可以更加优先考虑脆弱性风险因素(VRF)级别至关重要的特定ICT外包项目特征。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Evaluation of Vulnerability Risk Factor: Critical ICT Outsourcing project characteristics
Business Strategist and Technologist Implementers realized that ICT Outsourcing was one of the most successful strategies for ICT operational cost cutting and solved the shortage of ICT expertise or resources to implement an ICT project and services. Unfortunately, the strategy cause's other significant risks that could interrupt the ICT outsourcing venture's success. Information Security Risk (ISR) was considered among the critical significant risk in ICT Outsourcing project. Therefore the objective of this study is to explore the information security Vulnerabilities Risks Factor (VRF) critical level for ICT Outsourcing project characteristics through exploratory analysis approach. About 300 government agencies and private companies from various industries in Malaysia involved in the survey. However, 36% response was analyzed as a sample for the study population. Thus, Vulnerability Risks Factor (VRF) critical level was analyzed and discussed for each common ICT Outsourcing project characteristics implemented in Malaysia. The results of the analysis discovered the evidence of those ICT outsourcing project characteristics, risks exploited through Vulnerabilities Risks Factor (VRF). Several highly critical ICT outsourcing project characteristics were project team size between 10 to 99 members (33.6%), medium size project (28.2%) and outsource the ICT project to more than one service provider. The findings could be used as an indicator for organizations to prepare more effective information security management plan for ICT Outsourcing project. Eventually, the organization could give more priority to the specific ICT Outsourcing project characteristic where the Vulnerability Risks Factor (VRF) level is critical.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信