Problems of Implementing Information Security Management Systems
Svetlana V. Aleksandrova, Victor A. Vasiliev, Mark N. Aleksandrov
Abstract
Svetlana V. Aleksandrova, Victor A. Vasiliev, Mark N. Aleksandrov
Abstract
To date, the issue of security of information system resources in the presence of threats in the global information sphere is one of the most urgent both in Russia and in the world. This is due to stricter requirements for companies that store and process personal data. Recently, more and more companies of large and medium-sized businesses regularly face the resolution of incidents related to data loss as a result of cyber attacks or violation of established information security regulations by the company's personnel. In this regard, priority attention to information security has become a necessity for running a successful business. An information security management system — ISMS) is a part of an organization's overall management system based on a risk-based approach to managing information security. SMIB allows not only to minimize the risks associated with information security, but also can give a serious competitive advantage in the global market.
OpenAlex reports 15 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
To date, the issue of security of information system resources in the presence of threats in the global information sphere is one of the most urgent both in Russia and in the world. This is due to stricter requirements for companies that store and process personal data. Recently, more and more companies of large and medium-sized businesses regularly face the resolution of incidents related to data loss as a result of cyber attacks or violation of established information security regulations by the company's personnel. In this regard, priority attention to information security has become a necessity for running a successful business. An information security management system — ISMS) is a part of an organization's overall management system based on a risk-based approach to managing information security. SMIB allows not only to minimize the risks associated with information security, but also can give a serious competitive advantage in the global market.
Key concepts: Information security management, Information security, Security information and event management, Computer security, Business, Information system, Certified Information Security Manager, Process (computing)