IT Security Risk Management Model for Cloud Computing: A Need for a New Escalation Approach
Gunnar Wahlgren and
Stewart Kowalski
Additional contact information
Gunnar Wahlgren: Department of Computer and Systems Sciences, Stockholm University, Kista, Sweden
Stewart Kowalski: Department of Computer and Systems Sciences, Stockholm University, Kista, Sweden
International Journal of E-Entrepreneurship and Innovation (IJEEI), 2013, vol. 4, issue 4, 1-19
Abstract:
The authors combined ISO 27005 framework for IT Security Risk Management with NIST Multitier framework. With this combined framework the authors create a new approach to IT Security Risk Management where IT Security Risk Management is place at the strategic, tactical and operational levels of an organizational. In this paper the authors concentrate on the monitoring and communication steps of IT Security Risk Management and especially escalation of new IT Security Incidents. The authors present a first draft to an IT Security Risk Escalation Capability Maturity Model based on ISACA´s Risk IT Framework. Finally the authors apply the approach to typical cloud computing environment as a first step to evaluate this new approach.
Date: 2013
References: Add references at CitEc
Citations:
Downloads: (external link)
http://services.igi-global.com/resolvedoi/resolve. ... 018/ijeei.2013100101 (application/pdf)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:igg:jeei00:v:4:y:2013:i:4:p:1-19
Access Statistics for this article
International Journal of E-Entrepreneurship and Innovation (IJEEI) is currently edited by Charice Hayes
More articles in International Journal of E-Entrepreneurship and Innovation (IJEEI) from IGI Global
Bibliographic data for series maintained by Journal Editor ().