Systemic Security Management
Laree S. Kiely, Terry Benzel
Abstract
Laree S. Kiely, Terry Benzel
Abstract
The University of Southern California's Institute for Critical Information Infrastructure Protection (ICIIP) developed a conceptual framework for enterprise security. ICIIP (which shouldn't be confused with the Institute for Information Infrastructure Protection, or I3P) sought to close the gap between the current corporate cybersecurity risk profile and what's needed to protect the US's critical infrastructure information. The ICIIP framework analyzes organizational systems (not computer systems, but rather coordinated organizational bodies), incorporates multiple disciplines, and makes recommendations about those systems' structure and relationships
OpenAlex reports 31 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
The University of Southern California's Institute for Critical Information Infrastructure Protection (ICIIP) developed a conceptual framework for enterprise security. ICIIP (which shouldn't be confused with the Institute for Information Infrastructure Protection, or I3P) sought to close the gap between the current corporate cybersecurity risk profile and what's needed to protect the US's critical infrastructure information. The ICIIP framework analyzes organizational systems (not computer systems, but rather coordinated organizational bodies), incorporates multiple disciplines, and makes recommendations about those systems' structure and relationships
Key concepts: Information security management, Critical infrastructure, Information security, Business, Critical infrastructure protection, Information system, Organizational structure, Computer security