Book Chapter or Conference Paper Title
Data confidentiality and integrity issues and role of information security management standard, policies and practices - An empirical study of telecommunication industry in Pakistan
Faculty / School
Faculty of Computer Sciences (FCS)
Department of Computer Science
Was this content written or created while at IBA?
nternational Conferences, SecTech and DRBC 2010, Held as Part of the Future Generation Information Technology Conference, FGIT 2010
Jeju Island, Korea
13-15 December 2010
Springer, Berlin, Heidelberg
Abstract / Description
The amount of data communications is increasing each day and with it comes the issues of assuring its security. This research paper explores the information security management issues with respect to confidentiality and integrity and the impact of Information Security Management Standards, Policies and Practices (ISMSPP) on information security. This research has been conducted on the telecommunication industry of Pakistan that was ranked 9th globally in 2009 in terms of subscription. The research methodology was case study based in which perceptions were gathered as well as thematic analysis of the interviews was done. The research focus is on breach of data integrity and confidentiality by the internal users in the industry and the perception of improvement, if any, of the data security due to implementation of security management policies and controls. The results show that information security measure are perceived to have a positive impact on reducing data confidentiality and integrity breaches but still falls short of what is required. It concludes that security policies might improve the situation provided, firstly, that the top managements takes information security seriously, and secondly, the non-technical human aspects of the issues are taken into consideration.
Nabi, S. I., Nabi, S. W., Tipu, S. A. A., Haqqi, B., Abid, Z., & Alghathbar, K. (2010). Data confidentiality and integrity issues and role of information security management standard, policies and practices–An empirical study of telecommunication industry in Pakistan. In Security Technology, Disaster Recovery and Business Continuity (pp. 47-56). Springer, Berlin, Heidelberg.
Nabi, S. I., Nabi, S. W., Tipu, S. A., Haqqi, B., Abid, Z., & Alghathbar, K. (2010). Data confidentiality and integrity issues and role of information security management standard, policies and practices - An empirical study of telecommunication industry in Pakistan., 122 (18650929), 47-56. https://doi.org/10.1007/978-3-642-17610-4_6