INFORMATION SECURITY AND QUALITY MANAGEMENT SYSTEMS INTEGRATION: CHALLENGES AND CRITICAL FACTORS

被引:0
|
作者
Fiore, Ana P. A. [1 ]
Facin, Ana L. F. [1 ,2 ]
Muniz, Jorge [1 ]
机构
[1] Sao Paulo State Univ UNESP, Sao Paulo, Brazil
[2] Paulista Univ UNIP, Sao Paulo, Brazil
基金
巴西圣保罗研究基金会;
关键词
Enabler Factors; Integrated Certified Management Systems; ISO; 27001; 9001; Analytic Hierarchy Process; ISO; 9001; IMPLEMENTATION; BENEFITS; DIFFICULTIES; MODELS;
D O I
10.24874/IJQR17.03-01
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Implementing a new management system in organizations that already have a certified management system can be challenging. This research discussed enabler factors that influence the integration of an information security management system certified following ISO 27001 with a quality management system certified following ISO 9001. Five factors were identified as the basis of this research: Implementation Model, Human Resources, Resources Availability, Standard Issues, and Standards Integration. Four factors were validated through the qualitative study with consultants specialized in implementing and integrating these standards. Then, by prioritizing these factors through the Analytic Hierarchy Process method, it was found that the most relevant aspect is Standards Integration for the managers from the institution object of study. For specialist consultants, the most pertinent factor is Human Resources.
引用
收藏
页码:635 / 650
页数:16
相关论文
共 50 条
  • [31] Assurance of Information Systems' Quality and Security
    Izonin, Ivan
    Hovorushchenko, Tetiana
    Popov, Peter
    Journal of Cyber Security and Mobility, 2023, 12 (03):
  • [32] Security Challenges of Integration of Hash Functions into Cloud Systems
    Tomovic, Dejan
    Ognjanovic, Ivana
    Sendelj, Ramo
    2015 4TH MEDITERRANEAN CONFERENCE ON EMBEDDED COMPUTING (MECO), 2015, : 110 - 114
  • [33] Critical success factors in enterprise wide information management systems projects
    Sumner, M
    ASSOCIATION FOR INFORMATION SYSTEMS - PROCEEDINGS OF THE FIFTH AMERICAS CONFERENCE ON INFORMATION SYSTEMS (AMCIS 1999), 1999, : 232 - 234
  • [34] Hybrid product - integration and challenges for the information systems
    Leimeister, Jan Marco
    Glauner, Christoph
    WIRTSCHAFTSINFORMATIK, 2008, 50 (03): : 248 - 251
  • [35] Information systems security and the information systems development project Towards a framework for their integration
    Tryfonas, T
    Kiountouzis, E
    SECURITY IN THE INFORMATION SOCIETY: VISIONS AND PERSPECTIVES, 2002, 86 : 347 - 356
  • [36] Exploring the critical success factors of information security management: a mixed-method approach
    Chen, Hao
    Hai, Yuge
    INFORMATION AND COMPUTER SECURITY, 2024, 32 (05) : 545 - 572
  • [37] Information systems security metrics management
    Kovacich, G
    COMPUTERS & SECURITY, 1997, 16 (07) : 610 - 618
  • [38] Information systems security metrics management
    Kovacich, Gerald
    Computers and Security, 1997, 16 (07): : 610 - 618
  • [39] Security management for radiological information systems
    Caramella, D
    Braccini, G
    Fabbrini, F
    Montanari, S
    Neri, E
    CAR '97 - COMPUTER ASSISTED RADIOLOGY AND SURGERY, 1997, 1134 : 1011 - 1011
  • [40] Security management: An information systems setting
    Warren, MJ
    Batten, LM
    INFORMATION SECURITY AND PRIVACY, 2002, 2384 : 257 - 270