Information Security Policy Development: A Literature Review

Abstract

Information security policy is one of the most important security controls, and considered as the foundation of any security regime in an organization. In fact, failure to formulate an information security policy is said to be one of the deadly sins in information security management. It is also evident that many organizations face difficulty constructing this document, its content and structure in particular. In this vein, a number of developed policy frameworks or models in the formulation of information security policy have been proposed and published in academic journals. The purpose of this study, therefore, was to review the actual state of the literature for the last 15 years (2001-2015) focusing on information security policy frameworks and models. This paper has found that there is still limited number of frameworks and models available, supported by empirical surveys. Since the development and implementation of an information security policy involves social, political, economic and technological factors, this paper, therefore, suggests further research towards an integrated theory-based security policy frameworks and models using social and organizational theories. In addition, existing models or frameworks from other fields such as management, engineering, social sciences may also be considered.

Authors and Affiliations

Noli B. Lucila Jr.

Keywords

Related Articles

Frequency Domain Approach of Image Steganography

Image steganography is the art of hiding a message, image, or file within another message, image, or file. Likely, an old term in Ancient Greek, Steganography is derived from steganos meaning ―”concealed” and graphein me...

Performing Network Simulators of TCP with E2E Network Model over UMTS Networks

Wireless links losses result in poor TCP throughput since losses are perceived as congestion by TCP with the evolution of 3G technologies like Universal Mobile Telecommunication System (UMTS), the usage of TCP has become...

MULTIMEDIA SECURITY, IMPACT ON OUR SOCIETY AND THE PLACE OF OUR LAW ON IT

The Mass diffusion of digital media and the explosive growth of telecommunication are reshaping the lifestyles of ordinary people, research and industry. Over the last decades, the rise of digital telecommunication techn...

Optimization Multicast Routing Problem by Enabled Virtualization Rendezvous Point

Multicast provides effective communication and transmission, optimizes performance and enables truly distributed applications, also simultaneously optimizes cost of the multicast tree, average delay and maximum end-to-en...

Implementation of an Instant Messaging Tool

Instant messaging (IM) becomes a vital part of our daily use in social media and internet network. The growing of communication needs reliable and fast technologies and tools. As a result, companies are implementing vari...

Download PDF file
  • EP ID EP183796
  • DOI -
  • Views 132
  • Downloads 0

How To Cite

Noli B. Lucila Jr. (2016). Information Security Policy Development: A Literature Review. International Journal of Innovative Research in Information Security, 0(0), 1-7. https://europub.co.uk/articles/-A-183796