A Re-Classification of IS security analysis approaches
Type
conference paper
Date Issued
2009-06-01
Author(s)
Research Team
iw6-init
Abstract
The role of security management in the development and operation of information systems has a long tradition of research in computer science, information systems and management science. Integrating the economic, organizational, and technical aspects of information systems security analysis and assessment requires a bridging of these different research streams. We examined major articles published concerning IS security using a new classification scheme for IS security analysis and assessment approaches. We looked at approaches discussed in recent publications as well those examined as in past articles that have attempted to classify various approaches to IS security. This paper therefore organizes a diverse collection of literature into a cohesive whole with the aim of providing IS management with an overview of current security analysis approaches, thereby offering management an effective aide for selecting the methods best suited to their needs. Furthermore, this work structures IS security research into a classification scheme that can also be used in future research and practice.
Language
English
Keywords
Information Systems Security
Security Management
Risk Management
Information Security Management Standards
HSG Classification
not classified
Refereed
Yes
Book title
Proceedings of the Fifteenth Americas Conference on Information Systems (AMCIS 2009)
Publisher
Association for Information Systems
Publisher place
AIS Electronic Library (AISeL)
Start page
11
Event Title
15th Americas Conference On Information Systems (AMCIS 2009)
Event Location
San Francisco, CA
Event Date
06.-09.08.2009
Official URL
Subject(s)
Division(s)
Eprints ID
219659
File(s)![Thumbnail Image]()
Name
JML_134.pdf
Size
377.39 KB
Format
Adobe PDF
Checksum (MD5)
a03f34cd850e2c43964de770a6f160f2