GOVERNING INFORMATION SECURITY IN CONJUNCTION WITH COBIT AND ISO 27001
Tolga MATARACIOGLU1 and Sevgi OZKAN2
1TUBITAK National Research Institute of Electronics and Cryptology (UEKAE),Department of Information Systems Security, 06700, Ankara, TURKEY
2Middle East Technical University, Informatics Institute,Department of Information Systems, 06531, Ankara, TURKEY
ABSTRACT
In this paper, after giving a brief definition of Information Security Management Systems (ISMS), ISO 27001, IT governance and COBIT, pros and cons of implementing only COBIT, implementing only IS0 27001 and implementing both COBIT and ISO 27001 together when governing information security in enterprises will be issued.
KEYWORDS
COBIT, ISO 27001, Information Security Management Systems (ISMS), PDCA, mapping, IT governance, framework, best practice, standard
Original Source Link : http://airccse.org/journal/nsa/0711ijnsa10.pdf
No comments:
Post a Comment