An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example

碩士 === 中國文化大學 === 資訊管理研究所碩士在職專班 === 95 === National Information Security Management Standard, CNS 17799, were be used in this study to establish an Information Security Management system self- evaluating Model. This stud took a Record deportment in a hospital as a case to verify this model. Through...

Full description

Bibliographic Details
Main Authors: Mei–Ying Chuang, 莊梅櫻
Other Authors: Dwen-Ren Tsai
Format: Others
Language:zh-TW
Published: 2006
Online Access:http://ndltd.ncl.edu.tw/handle/91816686585749895714
id ndltd-TW-095PCCU1396006
record_format oai_dc
spelling ndltd-TW-095PCCU13960062016-05-27T04:18:20Z http://ndltd.ncl.edu.tw/handle/91816686585749895714 An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example 運用CNS17799建立資訊安全管理自我評鑑模型-以某地區醫院病歷室為例 Mei–Ying Chuang 莊梅櫻 碩士 中國文化大學 資訊管理研究所碩士在職專班 95 National Information Security Management Standard, CNS 17799, were be used in this study to establish an Information Security Management system self- evaluating Model. This stud took a Record deportment in a hospital as a case to verify this model. Through analyzing the results, we found the security situations and deficiencies. There are eleven security categories in the self- estimate model. We first tabulated a grading form for all controls. Then, We gave a form to every persons in the organization assessed. to fill according to the reality of her work After that, we used the “arithmetic mean” to calculate the total grades and draw the kavit graphs for all categories. The graphs showed the overall situation of the Information Security in the organization visually. The case we picked belonged to a special sector which needed to conform regulations of the Bureau of National Health Insurance Based on this reason, we found that most of their security categoried are compliant. “Business Continuity Management” and “Information Security Incident Management” are their strongest categories. “Asset Management”, “Security Policy” and “Organizing Information Security” are the three they have to reinforce. Dwen-Ren Tsai 蔡敦仁 2006 學位論文 ; thesis 183 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 中國文化大學 === 資訊管理研究所碩士在職專班 === 95 === National Information Security Management Standard, CNS 17799, were be used in this study to establish an Information Security Management system self- evaluating Model. This stud took a Record deportment in a hospital as a case to verify this model. Through analyzing the results, we found the security situations and deficiencies. There are eleven security categories in the self- estimate model. We first tabulated a grading form for all controls. Then, We gave a form to every persons in the organization assessed. to fill according to the reality of her work After that, we used the “arithmetic mean” to calculate the total grades and draw the kavit graphs for all categories. The graphs showed the overall situation of the Information Security in the organization visually. The case we picked belonged to a special sector which needed to conform regulations of the Bureau of National Health Insurance Based on this reason, we found that most of their security categoried are compliant. “Business Continuity Management” and “Information Security Incident Management” are their strongest categories. “Asset Management”, “Security Policy” and “Organizing Information Security” are the three they have to reinforce.
author2 Dwen-Ren Tsai
author_facet Dwen-Ren Tsai
Mei–Ying Chuang
莊梅櫻
author Mei–Ying Chuang
莊梅櫻
spellingShingle Mei–Ying Chuang
莊梅櫻
An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example
author_sort Mei–Ying Chuang
title An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example
title_short An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example
title_full An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example
title_fullStr An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example
title_full_unstemmed An CNS17799-Based Information Security Management System Self-Evaluating Model- Taking a Local Hospital Medicine Record Department as an Example
title_sort cns17799-based information security management system self-evaluating model- taking a local hospital medicine record department as an example
publishDate 2006
url http://ndltd.ncl.edu.tw/handle/91816686585749895714
work_keys_str_mv AT meiyingchuang ancns17799basedinformationsecuritymanagementsystemselfevaluatingmodeltakingalocalhospitalmedicinerecorddepartmentasanexample
AT zhuāngméiyīng ancns17799basedinformationsecuritymanagementsystemselfevaluatingmodeltakingalocalhospitalmedicinerecorddepartmentasanexample
AT meiyingchuang yùnyòngcns17799jiànlìzīxùnānquánguǎnlǐzìwǒpíngjiànmóxíngyǐmǒudeqūyīyuànbìnglìshìwèilì
AT zhuāngméiyīng yùnyòngcns17799jiànlìzīxùnānquánguǎnlǐzìwǒpíngjiànmóxíngyǐmǒudeqūyīyuànbìnglìshìwèilì
AT meiyingchuang cns17799basedinformationsecuritymanagementsystemselfevaluatingmodeltakingalocalhospitalmedicinerecorddepartmentasanexample
AT zhuāngméiyīng cns17799basedinformationsecuritymanagementsystemselfevaluatingmodeltakingalocalhospitalmedicinerecorddepartmentasanexample
_version_ 1718283135536332800