Mapping ISO 27002 into security ontology

Ferran Alcázar Vargas, Stefan Fenz · UPCommons institutional repository (Universitat Politècnica de Catalunya) · 2012

In recent years, due to the increasingly interconnected environment, information is exposed to a growing number of threats and vulnerabilities. Therefore, it is especially important for an organization to have an efficient information security management system. Recently, it has been observed that organisations are looking for standards of best practice for guidance on how to manage their information security infrastructures. In this way, they can demonstrate that their information is adequately secured, and show to their customers and business partners that they can be trusted with protection of the important information. This document presents a methodology of mapping the ISO 27002 standard knowledge to the security ontology and it is intended for organisations that aim to maintain compliance with it.

Read the paper · More papers on PaperTik