Intelligent Enterprise Information Security Architecture Based on Service Oriented Architecture
Jianguang Sun, Yan Chen
Abstract
Jianguang Sun, Yan Chen
Abstract
Traditionally, researches on information security mainly focus on the different sub-disciplines such as network security; application security; grid security, etc., but not much emphasis is focused on integrated enterprise information security architecture. The paper proposed a layered and service-oriented intelligent enterprise information security architecture, helping to build a model to manage the enterprise information security activities systematically, intelligently and incorporate with the overall information management activities. The authors also propose to define the information security and risk control services based on SOA architecture referring to ISO/IEC 27002 standard and industrypsilas best practices. It is concluded that these will enhance the effectiveness of enterprise information security management and risk control activities.
OpenAlex reports 12 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
Traditionally, researches on information security mainly focus on the different sub-disciplines such as network security; application security; grid security, etc., but not much emphasis is focused on integrated enterprise information security architecture. The paper proposed a layered and service-oriented intelligent enterprise information security architecture, helping to build a model to manage the enterprise information security activities systematically, intelligently and incorporate with the overall information management activities. The authors also propose to define the information security and risk control services based on SOA architecture referring to ISO/IEC 27002 standard and industrypsilas best practices. It is concluded that these will enhance the effectiveness of enterprise information security management and risk control activities.
Key concepts: Enterprise information security architecture, Sherwood Applied Business Security Architecture, Computer science, Enterprise architecture, Security information and event management, Information security management, Enterprise architecture management, Security service