標題: | Paper: a study on the certification of the information security management systems |
作者: | Fung, ARW Farn, KJ Lin, AC 資訊管理與財務金融系 註:原資管所+財金所 Department of Information Management and Finance |
關鍵字: | certification;conformity assessment procedure;information security management system;standard;trust |
公開日期: | 1-九月-2003 |
摘要: | Current reliable strategies for information security are all chosen using incomplete information. With standards, problems resulting from incomplete information can be reduced, since with standards, we can decrease the choices and simplify the process for reliable supply and demand decision making. This paper is to study the certification of information security management systems based on specifications promulgated by the Bureau of Standards, Metrology and Inspection (BSMI), Ministry of Economic Affairs in accordance with international standards and their related organizations. And we suggest a certification requirement concept for five different levels of "Information and Communication Security Protection System" in our country, the Republic of China, Taiwan. (C) 2003 Elsevier Science B.V. All rights reserved. |
URI: | http://dx.doi.org/10.1016/S0920-5489(03)00014-X http://hdl.handle.net/11536/27610 |
ISSN: | 0920-5489 |
DOI: | 10.1016/S0920-5489(03)00014-X |
期刊: | COMPUTER STANDARDS & INTERFACES |
Volume: | 25 |
Issue: | 5 |
起始頁: | 447 |
結束頁: | 461 |
顯示於類別: | 期刊論文 |