{"title":"评估信息系统风险管理过程成熟度的ISR3M模型:案例研究","authors":"Mina Elmaallam, A. Kriouile","doi":"10.1109/CIST.2012.6388056","DOIUrl":null,"url":null,"abstract":"We aim through this article to contribute to the development of information system (IS) governance and more specifically of IS risk management (RM). We then propose a maturity model for IS risk management and we implement it on a case study following all the steps in the model designed. Those steps are: defining the list of information systems of the organization, measuring the maturity for each of those IS taking into account the evolution in its life cycle, measuring the consolidated maturity of IS risk management process for the organization.","PeriodicalId":120664,"journal":{"name":"2012 Colloquium in Information Science and Technology","volume":"109 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-12-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":"{\"title\":\"Model ISR3M for assessing maturity of IS risk management process: Case study\",\"authors\":\"Mina Elmaallam, A. Kriouile\",\"doi\":\"10.1109/CIST.2012.6388056\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"We aim through this article to contribute to the development of information system (IS) governance and more specifically of IS risk management (RM). We then propose a maturity model for IS risk management and we implement it on a case study following all the steps in the model designed. Those steps are: defining the list of information systems of the organization, measuring the maturity for each of those IS taking into account the evolution in its life cycle, measuring the consolidated maturity of IS risk management process for the organization.\",\"PeriodicalId\":120664,\"journal\":{\"name\":\"2012 Colloquium in Information Science and Technology\",\"volume\":\"109 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2012-12-24\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"4\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2012 Colloquium in Information Science and Technology\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/CIST.2012.6388056\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2012 Colloquium in Information Science and Technology","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/CIST.2012.6388056","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Model ISR3M for assessing maturity of IS risk management process: Case study
We aim through this article to contribute to the development of information system (IS) governance and more specifically of IS risk management (RM). We then propose a maturity model for IS risk management and we implement it on a case study following all the steps in the model designed. Those steps are: defining the list of information systems of the organization, measuring the maturity for each of those IS taking into account the evolution in its life cycle, measuring the consolidated maturity of IS risk management process for the organization.