使用PDCA模型的数字数据保护新管理标准,以ISO/IEC 27001和R.A. 10173为基础

Chester L. Cofino, M. M. P. Cruz, Ken M. Balogo, Jefrey G. Alegia, Van Roger B. Gutib, Ryan B. Escorial, F. Wenceslao, Jr.
{"title":"使用PDCA模型的数字数据保护新管理标准,以ISO/IEC 27001和R.A. 10173为基础","authors":"Chester L. Cofino, M. M. P. Cruz, Ken M. Balogo, Jefrey G. Alegia, Van Roger B. Gutib, Ryan B. Escorial, F. Wenceslao, Jr.","doi":"10.46338/ijetae0523_08","DOIUrl":null,"url":null,"abstract":"ICT security has proven to be important in any organization in dealing with digital data. In implementing data protection, there are several challenges that an organization may encounter such as employee’s lack of awareness and education, cybersecurity threats, data breaches, lack of technical infrastructure, and limited resources. To combat internal security threats and encourage employees' security habits every agency, in the different sectors of the government must practice and promote data protection awareness against cybercrimes. To improve the security posture of every public or private organization in the Philippines. This study looked at a newly suggested security management standard that offers a thorough framework for detecting and evaluating risks to ICT (information and communication technology) systems and applications. The proposed standard strongly emphasizes the necessity of ongoing security control monitoring and assessment, frequent recovery plan testing and evaluation, and compliance with the PDCA Model anchored to the ISO/IEC 27001 standard and the Data Privacy Act of 2012. The study examined the suggested standard's main aspects and potential business advantages, including security, compliance, and stakeholder coordination and communication as well as emphasized the difficulties in implementing the suggested standard, including the requirement for significant resources and knowledge. The proposed standard also provides a common language for communication and collaboration among stakeholders, including I.T. staff, business leaders, and external partners. This can help promote a security culture and ensure everyone in the organization works together towards a common goal.","PeriodicalId":169403,"journal":{"name":"International Journal of Emerging Technology and Advanced Engineering","volume":"102 3 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-05-13","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"New Management Standard for Digital Data Protection Using A PDCA Model Anchored to ISO/IEC 27001 and R.A. 10173\",\"authors\":\"Chester L. Cofino, M. M. P. Cruz, Ken M. Balogo, Jefrey G. Alegia, Van Roger B. Gutib, Ryan B. Escorial, F. Wenceslao, Jr.\",\"doi\":\"10.46338/ijetae0523_08\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"ICT security has proven to be important in any organization in dealing with digital data. In implementing data protection, there are several challenges that an organization may encounter such as employee’s lack of awareness and education, cybersecurity threats, data breaches, lack of technical infrastructure, and limited resources. To combat internal security threats and encourage employees' security habits every agency, in the different sectors of the government must practice and promote data protection awareness against cybercrimes. To improve the security posture of every public or private organization in the Philippines. This study looked at a newly suggested security management standard that offers a thorough framework for detecting and evaluating risks to ICT (information and communication technology) systems and applications. The proposed standard strongly emphasizes the necessity of ongoing security control monitoring and assessment, frequent recovery plan testing and evaluation, and compliance with the PDCA Model anchored to the ISO/IEC 27001 standard and the Data Privacy Act of 2012. The study examined the suggested standard's main aspects and potential business advantages, including security, compliance, and stakeholder coordination and communication as well as emphasized the difficulties in implementing the suggested standard, including the requirement for significant resources and knowledge. The proposed standard also provides a common language for communication and collaboration among stakeholders, including I.T. staff, business leaders, and external partners. This can help promote a security culture and ensure everyone in the organization works together towards a common goal.\",\"PeriodicalId\":169403,\"journal\":{\"name\":\"International Journal of Emerging Technology and Advanced Engineering\",\"volume\":\"102 3 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2023-05-13\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"International Journal of Emerging Technology and Advanced Engineering\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.46338/ijetae0523_08\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"International Journal of Emerging Technology and Advanced Engineering","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.46338/ijetae0523_08","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

事实证明,在处理数字数据的任何组织中,信息通信技术安全都是重要的。在实施数据保护时,组织可能会遇到一些挑战,例如员工缺乏意识和教育、网络安全威胁、数据泄露、缺乏技术基础设施和有限的资源。为了打击内部安全威胁并鼓励员工的安全习惯,政府不同部门的每个机构都必须实践和提高针对网络犯罪的数据保护意识。改善菲律宾所有公共或私人组织的安全状况。这项研究着眼于一项新提出的安全管理标准,该标准为检测和评估ICT(信息和通信技术)系统和应用的风险提供了一个全面的框架。拟议的标准强调了持续的安全控制监测和评估的必要性,频繁的恢复计划测试和评估,以及遵守以ISO/IEC 27001标准和2012年数据隐私法为基础的PDCA模型。该研究检查了建议的标准的主要方面和潜在的业务优势,包括安全性、遵从性和利益相关者的协调和沟通,并强调了实施建议的标准的困难,包括对大量资源和知识的需求。提议的标准还为涉众(包括it人员、业务领导和外部合作伙伴)之间的沟通和协作提供了一种通用语言。这有助于促进安全文化,并确保组织中的每个人都朝着共同的目标一起工作。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
New Management Standard for Digital Data Protection Using A PDCA Model Anchored to ISO/IEC 27001 and R.A. 10173
ICT security has proven to be important in any organization in dealing with digital data. In implementing data protection, there are several challenges that an organization may encounter such as employee’s lack of awareness and education, cybersecurity threats, data breaches, lack of technical infrastructure, and limited resources. To combat internal security threats and encourage employees' security habits every agency, in the different sectors of the government must practice and promote data protection awareness against cybercrimes. To improve the security posture of every public or private organization in the Philippines. This study looked at a newly suggested security management standard that offers a thorough framework for detecting and evaluating risks to ICT (information and communication technology) systems and applications. The proposed standard strongly emphasizes the necessity of ongoing security control monitoring and assessment, frequent recovery plan testing and evaluation, and compliance with the PDCA Model anchored to the ISO/IEC 27001 standard and the Data Privacy Act of 2012. The study examined the suggested standard's main aspects and potential business advantages, including security, compliance, and stakeholder coordination and communication as well as emphasized the difficulties in implementing the suggested standard, including the requirement for significant resources and knowledge. The proposed standard also provides a common language for communication and collaboration among stakeholders, including I.T. staff, business leaders, and external partners. This can help promote a security culture and ensure everyone in the organization works together towards a common goal.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Impact of Climate Change on Fish Species Classification Using Machine Learning and Deep Learning Algorithms Bibliometric Analysis of the Influence of Artificial Intelligence on the Development of Education Wireless IoT Networks Security and Lightweight Encryption Schemes- Survey Challenges of Requirements Engineering in Agile Projects: A Systematic Review From Data to Design: An IoT-Based Novel Solution for Combating Distracted Driving and Speeding Events
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1