Information security measures applied at the university
Zornitsa Yakova, Stefanov Krassen, Kliment Ohridski
Abstract
Zornitsa Yakova, Stefanov Krassen, Kliment Ohridski
Abstract
in English: In the modern world the information security is important for each institution. Many security standards and requirements frameworks have been developed for cyber security defense. The effectiveness of the security measures mostly rely on experience with different constantly evolving attacks. To address risks into their systems and the critical data they used the institutions have to follow some standards or guides for best practices. Highly recommended for the information security effectiveness is the usage of a holistic security approach consisting of an approved security policy system. The universities are open institutions. They have different processes and requirements than usual enterprises, so their security policies and approaches are different. The main aim of the paper is to identify the weaknesses of the security approaches at Sofia University and to propose measures for their improvement. The paper first is making analysis of existing policies and security systems deployed in some of the best universities in the world. The results of analysis will serve as baseline to establish such an information security policy at Sofia University or improving the existing ones.
A significance statement is not available in the OpenAlex record.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
in English: In the modern world the information security is important for each institution. Many security standards and requirements frameworks have been developed for cyber security defense. The effectiveness of the security measures mostly rely on experience with different constantly evolving attacks. To address risks into their systems and the critical data they used the institutions have to follow some standards or guides for best practices. Highly recommended for the information security effectiveness is the usage of a holistic security approach consisting of an approved security policy system. The universities are open institutions. They have different processes and requirements than usual enterprises, so their security policies and approaches are different. The main aim of the paper is to identify the weaknesses of the security approaches at Sofia University and to propose measures for their improvement. The paper first is making analysis of existing policies and security systems deployed in some of the best universities in the world. The results of analysis will serve as baseline to establish such an information security policy at Sofia University or improving the existing ones.
Key concepts: Security information and event management, Information security standards, Standard of Good Practice, Information security management, Certified Information Security Manager, Security service, Security through obscurity, Information security