کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
6883116 1444126 2018 25 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Integrated risk management process assessment model for IT organizations based on ISO 31000 in an ISO multi-standards context
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
Integrated risk management process assessment model for IT organizations based on ISO 31000 in an ISO multi-standards context
چکیده انگلیسی
With risk management as a key challenge for most organizations, aligning and improving organisational and business processes is essential. Capability and Maturity Models can contribute to assess and then enable process improvement. With the need to integrate risk management in IT Organizations (IT department/organisation), ISO/IEC 15,504-330xx process assessment approach combined with the latest version of ISO 31,000 for risk management can be the foundations for new process models. An integrated process-based approach with various popular and market demands ISO standards (ISO 9001, ISO 21,500, ISO/IEC 20,000-1 and ISO/IEC 27,001) is proposed in the paper; it explains how the Integrated Risk Management Process Assessment Model for IT Organizations in an ISO multi-standards context is developed with a Design Science research method.
ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Computer Standards & Interfaces - Volume 60, November 2018, Pages 57-66
نویسندگان
, , ,