Information Security Management: A Hierarchical Framework for Various Approaches

M.M Eloff,S.H von Solms
DOI: https://doi.org/10.1016/s0167-4048(00)88613-7
2000-03-01
Abstract:The present article is aimed at clarifying the oft-times confusing terminology and at elucidating the various approaches obtaining to the realm of Information Security (IS) management. The IS management approaches selected for discussion in this article will specifically address those rudiments and concepts that play a key role in the assessment of the IS status of an organization. Following, a hierarchical framework will be developed in terms of which to elucidate ill-defined terms and concepts. By so doing, issues such as certification, benchmarking, guidelines and codes of practice will come under consideration. IS management approaches widely accepted in the international arena will also be mapped onto the said hierarchical framework.
computer science, information systems
What problem does this paper attempt to address?