Development of a Security Audit Framework for an Organization

dc.contributor.authorUJJAMAN, MD. MAHABUB
dc.date.accessioned2018-03-11T05:35:30Z
dc.date.available2018-03-11T05:35:30Z
dc.date.issued2018-02-27
dc.description.abstractNow-a-days in the modern organizations, Information and Communication Technologies are used to support the organizations’ activities. To manage the quality of the organization processes, audit processes are implemented. Auditing Information Systems Security is difficult and becomes crucial to ensure the daily operational activities of organizations as well as to promote competition and to create new business opportunities. With a large number of parameters in the global standards, managing a conceptual security framework to manage and audit Information System Security especially for small to medium companies in Bangladesh is really cumbersome and a daunting process to follow. The purpose of this work is to propose a security audit framework for small to medium level organizations based on the ISO/IEC_JCT1 standards, to assist organizations to better manage their In-formation Systems Security. To evaluate the proposed framework, some questionnaires were prepared and testing results of the effectiveness of IT Governance and Security controls mechanism based on the framework were shown to prove the efficacy of the approach. The framework should help an organization to minimize vulnerabilities, ensure smooth and transparent governance and protect information assets.en_US
dc.identifier.urihttp://dspace.uiu.ac.bd/handle/52243/177
dc.titleDevelopment of a Security Audit Framework for an Organizationen_US
dc.typeThesisen_US

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Thesis_report_Mahbub_Ujjaman_Final_Feb_2018.pdf
Size:
1.81 MB
Format:
Adobe Portable Document Format
Description:

License bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
license.txt
Size:
1.62 KB
Format:
Item-specific license agreed upon to submission
Description: