ABSTRACT

This book proposes a global and systemic multidimensional integrated approach to the holistic evaluation of the information security posture of an organization. The Information Security Assurance Assessment Model (ISAAM) presented in this book is based on, and integrates, a number of information security best practices, standards, methodologies and sources of research expertise. This approach will help improve the identification of security requirements, measures and controls; while providing a means of enhancing the recognition of evidence related to the assurance, quality, and maturity levels of the organization's security posture.

chapter 1|20 pages

What is Information Security?

chapter 2|22 pages

Risk Management versus Security Management

chapter 4|32 pages

Evaluating the Organizational Dimension

chapter 5|34 pages

Evaluating the Functional Dimension

chapter 6|20 pages

Evaluating the Human Dimension

chapter 7|24 pages

Evaluating the Compliance Dimension

chapter 8|6 pages

Concluding Remarks