1st Edition

Information Security Evaluation A Holistic Approach from a Business Perspective

    This book proposes a global and systemic multidimensional integrated approach to the holistic evaluation of the information security posture of an organization. The Information Security Assurance Assessment Model (ISAAM) presented in this book is based on, and integrates, a number of information security best practices, standards, methodologies and sources of research expertise. This approach will help improve the identification of security requirements, measures and controls; while providing a means of enhancing the recognition of evidence related to the assurance, quality, and maturity levels of the organization's security posture.

    What is Information Security? Risk Management versus Security Management. Information Security Assurance: an Assessment Model. Evaluating the Organizational Dimension. Evaluating the Functional Dimension. Evaluating the Human Dimension. Evaluating the Compliance Dimension. Concluding Remarks. Bibliography. Index of Keywords and Concepts.

    Biography

    Igli Tashi holds a Ph.D. in Information Systems and a Master of Advanced Studies in Legal Issues, Crime and ICT Security, both from the University of Lausanne. He is an expert on information security and risk management issues and works currently as a Senior Auditor for PricewaterhouseCoopers SA in Switzerland.

    Solange Ghernaouti-Helie is a professor in the Faculty of Business and Economics at the University of Lausanne and well-known recognised international expert on cybersecurity and cybercrime-related issues. She has developed an interdisciplinary and integrative security approach for citizens, organisations and states, and she is author of more than twenty books on telecommunications and security issues.