Browsing by Author "Quiroz, Dorys"
Now showing 1 - 2 of 2
- Results Per Page
- Sort Options
Publication Information security management frameworks and strategies in higher education institutions: a systematic review(2021) Merchán Lima, Jorge Luis; Astudillo Salinas, Darwin Fabián; Tello Oquendo, Luis; Sánchez, Franklin; López Fonseca, Gabriel; Quiroz, DorysEffective information security management (ISM) practices to protect the information assets of organizations from security intrusions and attacks is imperative. In that sense, a systematic literature review of academic articles focused on ISM in higher education institutions (HEIs) is conducted. For this purpose, an empirical study was performed. Studies carried out from 2012 onward reporting results from HEIs data that perform the ISM through various means, such as a set of framework functions, implementation phases, infrastructure services, and securities to their assets, have been explored. The articles found were then analyzed following a methodological procedure consisting of a systematic mapping study with their research questions, inclusion and exclusion criteria, selection of digital libraries, and analysis of the respective search strings. A set of competencies, resources, directives, and strategies that contribute to designing and to developing an ISM framework (ISMF) for HEIs is identified based on standards such as ISO 27000, COBIT, ITIL, NIST, and EDUCAUSE. This study introduces a strategic reference that guides HEIs on the development of an ISMF and provides recommendations that should be considered for its implementation in an era of ever-evolving security threats.Publication Information security management frameworks in higher education institutions: an overview(Institute of Electrical and Electronics Engineers Inc., 2019) Merchán Lima, Jorge; Astudillo Salinas, Darwin Fabián; Tello Oquendo, Luis; Sanchez, Franklin; Lopez, Gabriel; Quiroz, DorysAn overview of academic articles focused on information security management (ISM) in higher education institutions (HEIs) is presented. For this purpose, an empirical study was carried out. The articles found were then analyzed following a methodological procedure consisted of a systematic mapping study with their research questions, inclusion and exclusion criteria, selection of digital libraries, and analysis of the respective search strings. As a result, a set of information security management frameworks (ISMF) for HEIs were identified. They are based on standards such as ISO 27000, COBIT, ITIL, NIST and EDUCAUSE.
