A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank
碩士 === 國立中央大學 === 資訊管理學系碩士在職專班 === 100 === In a highly competeive enronment, banks rely more and more on infromation security system. However, with the incresing information secutiry incidents, it would be very important for banks to follow a well-defined information security management system (ISMS...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2012
|
Online Access: | http://ndltd.ncl.edu.tw/handle/70036588759766665422 |
id |
ndltd-TW-100NCU05396064 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-100NCU053960642015-10-13T21:22:38Z http://ndltd.ncl.edu.tw/handle/70036588759766665422 A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank 探討銀行業ISO/IEC 27001: 2005 資訊安全管理現況-以T 銀行為例 Cheng-hung Chang 張正宏 碩士 國立中央大學 資訊管理學系碩士在職專班 100 In a highly competeive enronment, banks rely more and more on infromation security system. However, with the incresing information secutiry incidents, it would be very important for banks to follow a well-defined information security management system (ISMS). This research takes a bank as the case study. The researcher wants to find out those important controls among those 133 ones based on the questionaries of ISO 27001. Besides, this study also wants to find out if it helps or promotes staff''s understanding towards administration effect after implementing ISMS. This study finds out there are ten key controls for bank. There are one control that comes form human resources security, six from security policy, orgination of imformation security, physical and environmental security, and three form communications and operations management. As a result, when implementing ISMS, banks should put more importance and human resource on those related meausres. What''s more this study also finds that implementing ISMS not only helps the imformation security but also does no negative effect to the administration effiency. As a reuslt, the researcher suggests banks which do not implement ISMS could take the possibilty of implementing ISMS into serious consideration to reinforce the information security of the orgination. Besides, the attitude of interviewers towards "the level that ISMS helps imformation security of banks" differs from different departments and job. Therefore, when an orgination could take this into consideration when implementing ISMS and find out its solution. Huey-wen Chou 周惠文 2012 學位論文 ; thesis 93 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立中央大學 === 資訊管理學系碩士在職專班 === 100 === In a highly competeive enronment, banks rely more and more on infromation security system. However, with the incresing information secutiry incidents, it would be very important for banks to follow a well-defined information security management system (ISMS). This research takes a bank as the case study. The researcher wants to find out those important controls among those 133 ones based on the questionaries of ISO 27001. Besides, this study also wants to find out if it helps or promotes staff''s understanding towards administration effect after implementing ISMS.
This study finds out there are ten key controls for bank. There are one control that comes form human resources security, six from security policy, orgination of imformation security, physical and environmental security, and three form communications and operations management. As a result, when implementing ISMS, banks should put more importance and human resource on those related meausres.
What''s more this study also finds that implementing ISMS not only helps the imformation security but also does no negative effect to the administration effiency. As a reuslt, the researcher suggests banks which do not implement ISMS could take the possibilty of implementing ISMS into serious consideration to reinforce the information security of the orgination. Besides, the attitude of interviewers towards "the level that ISMS helps imformation security of banks" differs from different departments and job. Therefore, when an orgination could take this into consideration when implementing ISMS and find out its solution.
|
author2 |
Huey-wen Chou |
author_facet |
Huey-wen Chou Cheng-hung Chang 張正宏 |
author |
Cheng-hung Chang 張正宏 |
spellingShingle |
Cheng-hung Chang 張正宏 A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank |
author_sort |
Cheng-hung Chang |
title |
A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank |
title_short |
A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank |
title_full |
A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank |
title_fullStr |
A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank |
title_full_unstemmed |
A Study on the ISO 27001: 2005 in Banking: Current Status of Information Security Mangement - A Case Study of T Bank |
title_sort |
study on the iso 27001: 2005 in banking: current status of information security mangement - a case study of t bank |
publishDate |
2012 |
url |
http://ndltd.ncl.edu.tw/handle/70036588759766665422 |
work_keys_str_mv |
AT chenghungchang astudyontheiso270012005inbankingcurrentstatusofinformationsecuritymangementacasestudyoftbank AT zhāngzhènghóng astudyontheiso270012005inbankingcurrentstatusofinformationsecuritymangementacasestudyoftbank AT chenghungchang tàntǎoyínxíngyèisoiec270012005zīxùnānquánguǎnlǐxiànkuàngyǐtyínxíngwèilì AT zhāngzhènghóng tàntǎoyínxíngyèisoiec270012005zīxùnānquánguǎnlǐxiànkuàngyǐtyínxíngwèilì AT chenghungchang studyontheiso270012005inbankingcurrentstatusofinformationsecuritymangementacasestudyoftbank AT zhāngzhènghóng studyontheiso270012005inbankingcurrentstatusofinformationsecuritymangementacasestudyoftbank |
_version_ |
1718061612825313280 |