Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
IT Security Risk Management Model for Cloud Computing: A Need for a New Escalation Approach
Stockholm University, Faculty of Social Sciences, Department of Computer and Systems Sciences.
Stockholm University, Faculty of Social Sciences, Department of Computer and Systems Sciences.
2013 (English)Conference paper, Published paper (Refereed)
Abstract [en]

We combined ISO 27005 framework for IT Security Risk Management with NIST Multitier framework and we claim that IT Security Risk Management framework exist at each organizational levels. In this paper we concentrate on the monitoring and communication steps of IT Security Risk Management and especially escalation of new IT Security Incidents. We present a first draft to an IT Security Risk Escalation Capability Maturity Model based on ISACA┬┤s Risk IT Framework. Finally we will use our approach in a cloud computing environment as we believe that it is necessary to react fast on incident and therefore a need to have a well-documented and communicated monitoring and escalation processes between different organizational levels.

Place, publisher, year, edition, pages
The Society of Digital Information and Wireless Communications (SDIWC) , 2013. 56-68 p.
Keyword [en]
Cloud Computing, IT Security Risk Management, Incident Escalation, Maturity Models, IT Security Risk Monitoring, IT Security Risk Communication
National Category
Information Systems
Research subject
Computer and Systems Sciences
Identifiers
URN: urn:nbn:se:su:diva-97736ISBN: 978-0-9891305-1-6 (print)OAI: oai:DiVA.org:su-97736DiVA: diva2:679966
Conference
The International Conference on Digital Information Processing, E-Business and Cloud Computing (DIPECC 2013), Dubai, UAE, October 23-25, 2013
Available from: 2013-12-17 Created: 2013-12-17 Last updated: 2016-12-05Bibliographically approved

Open Access in DiVA

No full text

Other links

Free full text

Search in DiVA

By author/editor
Wahlgren, GunnarKowalski, Stewart
By organisation
Department of Computer and Systems Sciences
Information Systems

Search outside of DiVA

GoogleGoogle Scholar

isbn
urn-nbn

Altmetric score

isbn
urn-nbn
Total: 41 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf