An Integrated System Theory of Information Security Management
學年 92
學期 1
出版(發表)日期 2003-10-01
作品名稱 An Integrated System Theory of Information Security Management
作品名稱(其他語言)
著者 Hong, Kwo Shing; Chi, Yen Ping; Chao, Louis R.; Tang, Jih Hsing
單位 淡江大學資訊工程學系
出版者 Bingley: Emerald Group Publishing Ltd.
著錄名稱、卷期、頁數 Information Management and Computer Security 11(5), pp.243-248
摘要 With the popularity of electronic commerce, many organizations are facing unprecedented security challenges. Security techniques and management tools have caught a lot of attention from both academia and practitioners. However, there is lacking a theoretical framework for information security management. This paper attempts to integrate security policy theory, risk management theory, control and auditing theory, management system theory and contingency theory in order to build a comprehensive theory of information security management (ISM). This paper suggests that an integrated system theory is useful for understanding information security management, explaining information security management strategies, and predicting management outcomes. This theory may lay a solid theoretical foundation for further empirical research and application.
關鍵字 Information systems;Control systems;Risk management;Systems theory;Contingency planning
語言 en
ISSN 0968-5227
期刊性質 國外
收錄於 EI
產學合作
通訊作者
審稿制度
國別 GBR
公開徵稿
出版型式 紙本
相關連結

機構典藏連結 ( http://tkuir.lib.tku.edu.tw:8080/dspace/handle/987654321/59868 )

機構典藏連結