Balanced Scorecard model for critical computer security controls according to the Center for Internet Security (CIS)

Descripción del Articulo

In different sectors of human activities, organizations are adopting information technology (IT) more intensively, exposing sensitive and confidential information of employees and customers. This situation makes public and private entities to develop standards and regulations to protect these inform...

Descripción completa

Detalles Bibliográficos
Autores: Marchand-Niño, William-Rogelio, Vega Ventocilla, Edwin Jesús
Formato: artículo
Fecha de Publicación:2020
Institución:Universidad de Lima
Repositorio:Revistas - Universidad de Lima
Lenguaje:español
OAI Identifier:oai:revistas.ulima.edu.pe:article/4876
Enlace del recurso:https://revistas.ulima.edu.pe/index.php/Interfases/article/view/4876
Nivel de acceso:acceso abierto
Materia:Compliance
security and privacy
organizational modeling
Cumplimiento
seguridad y privacidad
modelamiento organizacional
Descripción
Sumario:In different sectors of human activities, organizations are adopting information technology (IT) more intensively, exposing sensitive and confidential information of employees and customers. This situation makes public and private entities to develop standards and regulations to protect these information assets, ensuring confidentiality, integrity and availability. As a result of the study, a Balanced Scorecard model that links the critical security controls of the CIS is formulated and supported by an office IT application as a preliminary tool that facilitates the presentation of the results. Such results highlight that the highest proportion (80%) of the preliminary application that occurred in five institutions agrees with the proposed model and its usefulness for monitoring and managing security controls.
Nota importante:
La información contenida en este registro es de entera responsabilidad de la institución que gestiona el repositorio institucional donde esta contenido este documento o set de datos. El CONCYTEC no se hace responsable por los contenidos (publicaciones y/o datos) accesibles a través del Repositorio Nacional Digital de Ciencia, Tecnología e Innovación de Acceso Abierto (ALICIA).