PARAMETERS AND GUIDELINES OF
ENFORCEABLE INFORMATION SECURITY
MANAGEMENT SYSTEMS

Sándor Dombora

Óbuda University, Kandó Kálmán Faculty of Electrical Engineering
Budapest, Hungary
INDECS 17(3-B), 485-491, 2019
DOI 10.7906/indecs.17.3.7
Full text available here.
 

Received: 8th December 2019.
Accepted: 31st August 2019.
Regular article

ABSTRACT

It is increasingly important for organizations to set up an Information Security Management System (ISMS) to fulfil their business interests and their legal compliance. The main purpose of these systems is to properly protect the information owned or managed by the organization. Often, the developed ISMS complies with the external regulatory environment, but contains unenforceable rules that impede work, so it is unable to fulfil its function. In order to prevent security incidents, it is not enough to ensure legal compliance. The enforceability of these policies is gaining increasing importance in order to avoid hindering work processes. This article identifies quality parameters and guidelines in order to improve quality, enable and improve enforceability of ISMS systems, in order to fulfil their purpose, mainly protection of company information assets. By adhering to these parameters and guidelines organisations can improve their ISMS systems which enforces security of their information assets.

KEY WORDS
information security, quality parameters, implementation directives, enforceable measures

CLASSIFICATION
ACM:K.6.5
JEL:D83


This is the official web site of the Scientific Journal INDECS.
Questions, comments and suggestions please send to: indecs@indecs.eu
Last modified: 20 June 2016.