Managing Security Requirements: Towards Better Alignment Between Information Systems And Business
نویسندگان
چکیده
Information Systems are increasingly becoming essential to the success of business organizations. They play a central role in the success of almost all components of the organization such as business decision-making, business strategy formulation, business goal modeling, managing organizational resources, structure, managing organizational data etc. However, protecting information systems and organizational resources from security threats is a critical task in the management of the business, which alternately, negatively affects the alignment process between business and information systems. Managing information security within business organizations calls for a clear understanding of the viewpoint of business and the architecture of the system that is being used in the organization. This paper presents a requirements engineering based approach to modeling and maping the issue of information security at an early stage of the system’s development life cycle in the context of alignment between business and information systems.
منابع مشابه
Requirements Engineering for Improving Business/IT Alignment in Security Risk Management Methods
Information systems (IS) security within organizations is more and more focused around risk management approaches. Central to these approaches is the need for a better understanding of the required alignment between the business view of the organization and the architecture of its underlying IS. Through the use of requirements engineering techniques, the paper suggests how this business/IT inte...
متن کاملBusiness-IT Strategic Alignment Focused on Social and Technical Dimensions
Achieving business-IT alignment is one of the main purposes and also challenges of organizations. Many studies have indicated the importance of aligning information systems (IS) function with other business functions. The main purpose of this survey is evaluating business-IT alignment focusing on social and technical dimensions of business-IT alignment in Bank Mellat. The data was collected thr...
متن کاملAn Integrative Alignment Approach for Information Security Policy in the Context of Strategic Planning
The enterprise information security policy is derived from the strategic requirements for risk management and corporate governance. Consistent alignment between the security policy and the other corporate business policies and strategies has to be maintained if information security is to be implemented according to evolving business objectives. There are however limitations in current approache...
متن کاملOptimal Strategies of Increasing Business Alignment, in Social Security Organization, with Quality Function Deployment (QFD) Approach
Considering the importance of the concept of strategic alignment of information technology (IT) in today economic organizations, this study attempted to extract the organization's IT strategies in order to increase the degree of strategic alignment and consequently the optimal strategies in the field of marketing and service delivery for social security organization. Using QFD technique and hie...
متن کاملInvestigating business-IT alignment through ITIL
Organizations have realized that in order to achieve competitive advantage, IT needs to be strategically aligned with business objectives. To achieve alignment leveraging, Information Technology Infrastructure Library (ITIL) is considered fundamental as a comprehensive approach to planning and managing IT actions within the organization, based on its business requirements. This survey reports o...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2011