conference-paper

Towards an Integration of Information Security Management, Risk Management and Enterprise Architecture Management – A Literature Review

Research footprint

At a glance

Citations
11
References
61
Comments
0
Paper overview

Öz

Organizations are faced with an increased number of security-related challenges. Our research interest is on information security matters with our proposition being that enterprise architecture management (EAM) can support risk management (RM) and information security management (ISM) for instance by providing a plethora of information about an organization's information assets. We conducted a literature review, which underlines our proposition. The pivotal question we aim to answer is how EAM, RM and ISM efforts can be integrated for "the greater good", i.e., to achieve a facilitation of RM and ISM through the adoption of EAM. As a result, we present an integrated conceptual model which places our findings in the context of the well-established concepts defined in ISO-27001, ISO-31000 and ISO-42010.

Record transparency

Publication details

DOI
10.1109/cloudcom.2019.00057
OpenAlex
W3003815634
Document type
conference-paper
Language
EN
Last metadata update
Community

Comments

Oturum Açın to join the discussion.

  1. No comments yet. Start the discussion.