English
Related papers

Related papers: Information Security Policy: A Management Practice…

200 papers

Cybersecurity is increasingly a concern for small and medium-sized enterprises (SMEs), and there exist many awareness training programs and tools for them. The literature mainly studies SMEs as a unitary type of company and provides…

Cryptography and Security · Computer Science 2021-10-12 Alireza Shojaifar , Heini Jarvinen

This study employs a systematic literature review approach to identify the requirements of a career as a cybersecurity professional. It aims to raise public awareness regarding opportunities in the Information Security (IS) profession. A…

Computers and Society · Computer Science 2024-04-24 Mike Nkongolo , Nita Mennega , Izaan van Zyl

Organizations use privacy policies to communicate their data collection practices to their clients. A privacy policy is a set of statements that specifies how an organization gathers, uses, discloses, and maintains a client's data. However,…

Cryptography and Security · Computer Science 2024-03-27 Maryam Majedi , Ken Barker

Evaluating the effectiveness of security awareness and training programs is critical for minimizing organizations' human security risk. Based on a literature review and industry interviews, we discuss current practices and devise guidelines…

Cryptography and Security · Computer Science 2021-12-14 Asangi Jayatilaka , Nathan Beu , Irina Baetu , Mansooreh Zahedi , M. Ali Babar , Laura Hartley , Winston Lewinsmith

Personal Information Management (PIM) refers to the practice and the study of the activities a person performs in order to acquire or create, store, organize, maintain, retrieve, use, and distribute information in each of its many forms…

Human-Computer Interaction · Computer Science 2021-07-13 William Jones , Jesse David Dinneen , Robert Capra , Anne R. Diekema , Manuel A. Pérez-Quiñones

Security patterns are a means to encapsulate and communicate proven security solutions. They are well-established approaches for introducing security into the software development process. Our objective is to explore the research efforts on…

Software Engineering · Computer Science 2018-12-03 Abbas Javan Jafari , Abbas Rasoolzadegan

The popularity of benefit realization management (BRM) in today's IT-enabled world is fast gaining traction within IT organisations around the world. However, there appears to be limited attention paid to the intra-organisational practice…

Computers and Society · Computer Science 2016-06-14 Ravinda Wijesinghe , Helana Scheepers , Stuart McLoughlin

The importance of security metrics can hardly be overstated. Despite the attention that has been paid by the academia, government and industry in the past decades, this important problem stubbornly remains open. In this survey, we present a…

Cryptography and Security · Computer Science 2016-01-25 Marcus Pendleton , Richard Garcia-Lebron , Shouhuai Xu

For computer software, our security models, policies, mechanisms, and means of assurance were primarily conceived and developed before the end of the 1970's. However, since that time, software has changed radically: it is thousands of times…

Cryptography and Security · Computer Science 2016-11-15 Úlfar Erlingsson

Due to the ever-increasing security breaches, practitioners are motivated to produce more secure software. In the United States, the White House Office released a memorandum on Executive Order (EO) 14028 that mandates organizations provide…

Cryptography and Security · Computer Science 2023-06-16 Nusrat Zahan , Shohanuzzaman Shohan , Dan Harris , Laurie Williams

In recent years, the number of cyber attacks has grown rapidly. An effective way to reduce the attack surface and protect software is adoption of methodologies that apply security at each step of the software development lifecycle. While…

Cryptography and Security · Computer Science 2023-07-06 Arina Kudriavtseva , Olga Gadyatskaya

It is imperative for organizations to us Information Security Management System (ISMS) to effectively manage their information assets. ISMS starts with a set of policies that dictate the usage computer resources. It starts with the "21…

Cryptography and Security · Computer Science 2012-04-09 Heru Susanto , Fahad Bin Muhaya , Mohammad Nabil Almunawar , Yong Chee Tuan

This article presents the current state of ML-security and of the documentation of ML-based systems, models and datasets in research and practice based on an extensive review of the existing literature. It shows a generally low awareness of…

Cryptography and Security · Computer Science 2025-07-17 Cara Ellen Appel

The development of services and the growing demand for resources sharing among users from different organizations with some level of affinity have motivated the creation of Identity Management Systems. Identity Management has gained…

Cryptography and Security · Computer Science 2019-03-01 Samia El Haddouti , Mohamed Dafir Ech-Cherif El Kettani

In this paper we present an approach for specifying and prioritizing information security requirements in organizations. It is important to prioritize security requirements since hundred per cent security is not achievable and the limited…

Cryptography and Security · Computer Science 2007-05-23 Xiamoneg Su , Damiano Bolzoni , Pascal van Eck

Purpose: An essential component of an organisation's cybersecurity strategy is building awareness and education of online threats, and how to protect corporate data and services. This research article focuses on this topic and proposes a…

Cryptography and Security · Computer Science 2021-08-23 Maria Bada , Jason R. C. Nurse

Multimedia Information security becomes a important part for the organization's intangible assets. Level of confidence and stakeholder trusted are performance indicator as successes organization, it is imperative for organizations to use…

Multimedia · Computer Science 2012-04-03 Heru Susanto , Mohammad Nabil Almunawar , Yong Chee Tuan , Mehmet Sabih Aksoy

It is well known that technology utilization is not restricted for one sector than the other anymore, Educational organizations share many parts of their information systems with commercial organizations. In this paper we will try to…

Other Computer Science · Computer Science 2011-11-30 Hussain A. H. Awad , Fadi M. Battah

Contemporary cybersecurity governance assumes that professionals apply risk reasoning. Yet major organisational failures persist despite investment in tools, staffing, and credentials. This study investigates the structural source of that…

Cryptography and Security · Computer Science 2026-04-24 Jeffrey T. Gardiner

Context/Background: process and practice adoption is a key element in modern software process improvement initiatives, and many of them fail. Goal: this paper presents a preliminary version of a usability model for software development…

Software Engineering · Computer Science 2017-10-31 Diego Fontdevila , Marcela Genero , Alejandro Oliveros