MANAGEMENT OF ORGANIZATIONS IN SERBIA FROM THE ASPECT OF THE MATURITY ANALYSIS OF INFORMATION SECURITY

被引:1
|
作者
Trivan, Dragan [1 ]
Arsenijevic, Olja [1 ]
Kastratovic, Edita [2 ]
机构
[1] Union Nikola Tesla Univ, Fac Business Study & Law, Belgrade, Serbia
[2] Fac Business Econ & Entrepreneurship, Belgrade, Serbia
关键词
information security; cyber security; cyber attacks; software protection; corporate security;
D O I
10.5937/intrev1604042T
中图分类号
F [经济];
学科分类号
02 ;
摘要
The aim of this work is focused on research of information security in organizations, with a focus on cybersecurity. In accordance with the theoretical analysis, the subject of the empirical part of the work is the analysis of information security in Serbia, in order to better understand the information security programs and management structures in organizations in Serbia. The survey covers a variety of industries and discusses how organizations assess, develop, create and support their programs to ensure information security. The survey included 53 companies. The results that were obtained enabled us to select five core elements of the program on the state of information security and cybersecurity in Serbian companies: most companies had not been exposed to cybersecurity incidents; in most companies policy, procedures and spheres of responsibility for information security exist, there are not enough controls to ensure compliance with relevant safety standards by third parties, top management and end-users are insufficiently familiar with cybersecurity risks, although they apply basic measures of protection, safety protection systems are very rare. The scientific goal of this work is to, on the basis of the results obtained, make conclusions that can contribute to the study of corporate information security with special emphasis on cybersecurity. The practical aim of the research is the application of the results for more efficient implementation process of security against cyber attacks in the Serbian organizations.
引用
收藏
页码:42 / 50
页数:9
相关论文
共 50 条
  • [21] Information security landscape and maturity level: Case study of Malaysian Public Service (MPS) organizations
    Dzazali, Suhazimah
    Sulaiman, Ainin
    Zolait, Ali Hussein
    GOVERNMENT INFORMATION QUARTERLY, 2009, 26 (04) : 584 - 593
  • [22] Management Maturity Model for Nonprofit Organizations
    Portella Tondolo, Rosana da Rosa
    Goncalves Tondolo, Vilmar Antonio
    Agostini, Manuela Rosing
    Sarquis, Alessio Bessa
    Teixeira de Mello, Simone Portella
    REVISTA DEL CLAD REFORMA Y DEMOCRACIA, 2016, (66) : 195 - 224
  • [23] SURVEY REGARDING THE COMMUNICATION AND INFORMATION SECURITY MANAGEMENT DOMAINS IN ROMANIAN ORGANIZATIONS
    Tiganoaia, Bogdan
    Grigoras, Bogdan
    MANAGEMENT OF TECHNOLOGICAL CHANGES, BOOK 1, 2011, : 217 - 220
  • [24] Risk assessment of Information Security Management System inGovernment Organizations in Iran
    Fayez, Samane
    Nazeri, HodaHosseinZade
    BagherKiaroodi, Mohammad
    PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON COMPUTER, NETWORKS AND COMMUNICATION ENGINEERING (ICCNCE 2013), 2013, 30 : 77 - 79
  • [25] Adopting security maturity model to the organizations' capability model
    Al-Matari, Osamah M. M.
    Helal, Iman M. A.
    Mazen, Sherif A.
    Elhennawy, Sherif
    EGYPTIAN INFORMATICS JOURNAL, 2021, 22 (02) : 193 - 199
  • [26] An Information Security Maturity Evaluation Mode
    Ge Xiao-yan
    Yuan Yu-qing
    Lu Li-lei
    INTERNATIONAL CONFERENCE ON ADVANCES IN ENGINEERING 2011, 2011, 24 : 335 - 339
  • [27] Application of CobiT Maturity Model in Information Security Management and Arising Problematic Issues
    Nogicevs, Dmitrijs
    BALTIC JOURNAL OF MODERN COMPUTING, 2010, 757 : 53 - 63
  • [28] Information Security Management Systems - A Maturity Model Based on ISO/IEC 27001
    Proenca, Diogo
    Borbinha, Jose
    BUSINESS INFORMATION SYSTEMS (BIS 2018), 2018, 320 : 102 - 114
  • [29] Maturity assessment and process improvement for information security management in small and medium enterprises
    Cholez, Herve
    Girard, Frederic
    JOURNAL OF SOFTWARE-EVOLUTION AND PROCESS, 2014, 26 (05) : 496 - 503
  • [30] MATURITY EVALUATION IN KNOWLEDGE MANAGEMENT IN ORGANIZATIONS FROM THE STATE OF MINAS GERAIS
    Ziviani, Fabricio
    Tavares Ferreira, Marta Araujo
    da Silva, Sandro Marcio
    REVISTA ELETRONICA DE ESTRATEGIA E NEGOCIOS-REEN, 2015, 8 (01): : 239 - 263