Proceeding of the Electrical Engineering Computer Science and Informatics
Vol 4: EECSI 2017

A Generic Framework for Information Security Policy Development

Wan Basri Wan Ismail (University of Selangor Malaysia)
Setyawan Widyarto (University of Selangor Malaysia)
Raja Ahmad Tariqi Raja Ahmad (University of Selangor Malaysia)
Khatipah Abd Ghani (University of Selangor Malaysia)



Article Info

Publish Date
01 Nov 2017

Abstract

Information security policies are not easy to create unless organizations explicitly recognize the various steps required in the development process of an information security policy, especially in institutions of higher education that use enormous amounts of IT. An improper development process or a copied security policy content from another organization might also fail to execute an effective job. The execution could be aimed at addressing an issue such as the non-compliance to applicable rules and regulations even if the replicated policy is properly developed, referenced, cited in laws or regulations and interpreted correctly. A generic framework was proposed to improve and establish the development process of security policies in institutions of higher education. The content analysis and cross-case analysis methods were used in this study in order to gainĀ  a thorough understanding of the information security policy development process in institutions of higher education

Copyrights © 2017






Journal Info

Abbrev

EECSI

Publisher

Subject

Computer Science & IT Electrical & Electronics Engineering

Description

Proceeding of the Electrical Engineering Computer Science and Informatics publishes papers of the "International Conference on Electrical Engineering Computer Science and Informatics (EECSI)" Series in high technical standard. The Proceeding is aimed to bring researchers, academicians, scientists, ...