Data confidentiality and integrity issues and role of information security management standard, policies and practices - An empirical study of telecommunication industry in Pakistan
Faculty / School
Faculty of Computer Sciences (FCS)
Department
Department of Computer Science
Was this content written or created while at IBA?
Yes
Document Type
Conference Paper
Publication Date
12-2010
Conference Name
nternational Conferences, SecTech and DRBC 2010, Held as Part of the Future Generation Information Technology Conference, FGIT 2010
Conference Location
Jeju Island, Korea
Conference Dates
13-15 December 2010
ISBN/ISSN
78650785485 (Scopus)
Volume
122
Issue
18650929
First Page
47
Last Page
56
Publisher
Springer, Berlin, Heidelberg
Keywords
Confidentiality, Human, Information security, Integrity, Policies and practices, Telecommunications
Abstract / Description
The amount of data communications is increasing each day and with it comes the issues of assuring its security. This research paper explores the information security management issues with respect to confidentiality and integrity and the impact of Information Security Management Standards, Policies and Practices (ISMSPP) on information security. This research has been conducted on the telecommunication industry of Pakistan that was ranked 9th globally in 2009 in terms of subscription. The research methodology was case study based in which perceptions were gathered as well as thematic analysis of the interviews was done. The research focus is on breach of data integrity and confidentiality by the internal users in the industry and the perception of improvement, if any, of the data security due to implementation of security management policies and controls. The results show that information security measure are perceived to have a positive impact on reducing data confidentiality and integrity breaches but still falls short of what is required. It concludes that security policies might improve the situation provided, firstly, that the top managements takes information security seriously, and secondly, the non-technical human aspects of the issues are taken into consideration.
DOI
https://doi.org/10.1007/978-3-642-17610-4_6
Citation/Publisher Attribution
Nabi, S. I., Nabi, S. W., Tipu, S. A. A., Haqqi, B., Abid, Z., & Alghathbar, K. (2010). Data confidentiality and integrity issues and role of information security management standard, policies and practices–An empirical study of telecommunication industry in Pakistan. In Security Technology, Disaster Recovery and Business Continuity (pp. 47-56). Springer, Berlin, Heidelberg.
Recommended Citation
Nabi, S. I., Nabi, S. W., Tipu, S. A., Haqqi, B., Abid, Z., & Alghathbar, K. (2010). Data confidentiality and integrity issues and role of information security management standard, policies and practices - An empirical study of telecommunication industry in Pakistan., 122 (18650929), 47-56. https://doi.org/10.1007/978-3-642-17610-4_6
COinS