Show simple item record

dc.contributor.authorFong, Norman
dc.contributor.authorBayona-Oré, Sussy
dc.date.accessioned2024-08-08T17:00:07Z
dc.date.available2024-08-08T17:00:07Z
dc.date.issued2023
dc.identifier.urihttps://hdl.handle.net/20.500.13067/3310
dc.description.abstractWith the incorporation of Information and Communication Technologies in organizations, Information Security is key to protect the organization's information assets. The purposes and objectives of the organization related to Information Security are set out in the Information Security Policy document, which are mandatory for the employee to comply with. However, despite the efforts made by the organizations to comply with them, this objective is not always achieved. In response, several authors have proposed practices to be followed in order to ensure compliance with Information Security Policies. This article presents a proposal for the integration of the practices identified in the literature review. These practices have been structured in four phases related to: the establishment of the Information Security Committee, considerations in the elaboration of an Information Security Policy, on the communication of information security policies and the evaluation of security performance. Also, a survey was conducted to evaluate the compliance of ISP. A total of 108 security professional participated in the survey. Consideration of good practices supports the deployment and monitoring of Information Security Policy compliance.es_PE
dc.formatapplication/pdfes_PE
dc.language.isoenges_PE
dc.publisherMachine Intelligence Research (MIR) Labses_PE
dc.rightsinfo:eu-repo/semantics/openAccesses_PE
dc.rights.urihttps://creativecommons.org/licenses/by-nc-sa/4.0/es_PE
dc.sourceAUTONOMAes_PE
dc.subjectCompliancees_PE
dc.subjectInformation securityes_PE
dc.subjectInformation security policieses_PE
dc.subjectISO 27001es_PE
dc.subjectISO 27002es_PE
dc.titleIntegration of Practices for Information Security Policy Compliancees_PE
dc.typeinfo:eu-repo/semantics/articlees_PE
dc.identifier.journalInternational Journal of Computer Information Systems and Industrial Management Applicationses_PE
dc.subject.ocdehttps://purl.org/pe-repo/ocde/ford#2.02.04es_PE
dc.source.volume16es_PE
dc.source.issue1es_PE
dc.source.beginpage30es_PE
dc.source.endpage39es_PE


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record

info:eu-repo/semantics/openAccess
Except where otherwise noted, this item's license is described as info:eu-repo/semantics/openAccess