IIUM Repository (IREP)

Information Security Management Systems (ISMS) and Computer Security Self-Efficacy (CSSE) model comparison

Al-Shawabkeh, Mahmoud M. M. and Mohd Saudi, Madihah and Mohd Alwi, Najwa Hayati and Azman, Norhidayah (2016) Information Security Management Systems (ISMS) and Computer Security Self-Efficacy (CSSE) model comparison. In: 2016 3rd International Conference on Computer, Communication and Control Technology (I4CT), 19th-21st Apr. 2016, Kota Kinabalu, Sabah. (Unpublished)

[img] PDF - Accepted Version
Restricted to Repository staff only

Download (364kB) | Request a copy
[img] PDF - Supplemental Material
Restricted to Repository staff only

Download (405kB) | Request a copy
Official URL: https://i4ct.org/

Abstract

Information security models designed based on a different set of assumptions which are based on the characteristics of information system, motivations of organization to protect information, goals of the attacker and data validation of the model. The threats to information security are real and growing. Financial organizations need to take protective measures by implementing security policies though effective resource allocation is very difficult. This situation is due to uncertainty about the nature and severity of the threats and vulnerabilities and the effectiveness of the mitigation measures. Varieties of security policy models have been proposed to the financial organizations. Therefore to overcome the stated issues, this paper presents an analysis of two commonly used models: the Information Security Management System ISO/IEC 27001:2015 and Computer Security Self-Efficacy (CSSE). Findings confirm the suitability of both models for e-Banking computer security policies.

Item Type: Conference or Workshop Item (Invited Papers)
Additional Information: /50428
Uncontrolled Keywords: Information Security, Evaluation, Computer Security Self-Efficacy, Information System, e-Banking
Subjects: H Social Sciences > HF Commerce > HF5001 Business. Business Administration
Q Science > QA Mathematics > QA75 Electronic computers. Computer science
T Technology > TK Electrical engineering. Electronics Nuclear engineering > TK7800 Electronics. Computer engineering. Computer hardware. Photoelectronic devices > TK7885 Computer engineering
Kulliyyahs/Centres/Divisions/Institutes: Centre for Foundation Studies
Depositing User: Mahmoud Al-Shawabkeh
Date Deposited: 18 Jul 2016 10:38
Last Modified: 23 May 2018 10:05
URI: http://irep.iium.edu.my/id/eprint/50428

Actions (login required)

View Item View Item

Downloads

Downloads per month over past year