Skip to main navigation Skip to search Skip to main content

Practical implementation of ISO 17799 compliant information security management system using novel ASD method

  • Jarkko Holappa
  • , Timo Wiander

Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsProfessional

Abstract

This paper discusses the practical implementation of the Agile Security Development (ASD framework and presents a case study that reviews the process of building an information security management system utilizing the framework. The case study reveals the action steps for a small and medium-sized organization to utilize the method. The ASD framework and its output is fully ISO/IEC17799 compliant but takes the organization’s actual management systems into account, so that ISO/IEC 17799 certification is not necessarily the ultimate target if the organization so chooses. The ASD framework supports auditing against the organization’s own baseline, which might not be compliant with existing standards and industry-defined best practices. Process improvement is achieved here through verifying the company’s ISMS so that it fulfills the requirements the company has set by doing a risk analysis to identify weak spots within the system.
Original languageEnglish
Title of host publicationIAEA Technical Meeting on Cyber Security of Nuclear Power Plant Instrumentation, Control, and Information Systems
PublisherInternational Atomic Energy Agency IAEA
Publication statusPublished - 2006
MoE publication typeD3 Professional conference proceedings
EventIAEA Technical Meeting on Cyber Security of Nuclear Power Plant Instrumentation, Control, and Information Systems - Idaho Falls, United States
Duration: 17 Oct 200620 Oct 2006

Conference

ConferenceIAEA Technical Meeting on Cyber Security of Nuclear Power Plant Instrumentation, Control, and Information Systems
Country/TerritoryUnited States
CityIdaho Falls
Period17/10/0620/10/06

UN SDGs

This output contributes to the following UN Sustainable Development Goals (SDGs)

  1. SDG 7 - Affordable and Clean Energy
    SDG 7 Affordable and Clean Energy
  2. SDG 9 - Industry, Innovation, and Infrastructure
    SDG 9 Industry, Innovation, and Infrastructure
  3. SDG 12 - Responsible Consumption and Production
    SDG 12 Responsible Consumption and Production

Fingerprint

Dive into the research topics of 'Practical implementation of ISO 17799 compliant information security management system using novel ASD method'. Together they form a unique fingerprint.

Cite this