The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government

碩士 === 國立宜蘭大學 === 多媒體網路通訊數位學習碩士在職專班 === 102 === Cloud computing has been the trend in recent years, most of the information system built on the cloud computing services. Therefore cloud security services are concern for cloud service providers and cloud consumer. How to do the relevant security poli...

Full description

Bibliographic Details
Main Authors: Kung Chang, 張恭
Other Authors: Tin-Yu Wu
Format: Others
Language:zh-TW
Published: 2014
Online Access:http://ndltd.ncl.edu.tw/handle/2ec8sc
id ndltd-TW-102NIU01652007
record_format oai_dc
spelling ndltd-TW-102NIU016520072019-05-15T21:23:12Z http://ndltd.ncl.edu.tw/handle/2ec8sc The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government 整合ISO 27001與CSA/CCM運用於私有雲之研究--以某政府機關為例 Kung Chang 張恭 碩士 國立宜蘭大學 多媒體網路通訊數位學習碩士在職專班 102 Cloud computing has been the trend in recent years, most of the information system built on the cloud computing services. Therefore cloud security services are concern for cloud service providers and cloud consumer. How to do the relevant security policies is the main challenge to deploy cloud services. Most government institutions have passed ISO 27001 information security management system, and also build private cloud virtural machine technology. It is important to manage the security of cloud computing of Information System Management infrastructure. By various means of this study, it includes observation、records、access the data, etc. It takes qualitative research progress to parse the resulting data. By collected Information Scurity Mangement Sytems-Requirements, Code of practice for Information Scurity Mnagement Sytems, Cloud Security Alliance/ Cloud Control Matrix, private cloud technology. This paper discusses the Integration of ISO 27001 and CSA/CCM (Cloud Security Alliance/Cloud Control Matrix) used in security of private cloud. In comparison with their controls, CSA/CCM increases 42 controls that ISO 27001 is not definition. When the organization adopt private cloud infrastructure, we can considerate to work ISO 27001 with CSA/CCM to build information security environment for the organization. After expert questionnaires by using the Modified Delphi method, the paper creates “Intergration of Information Security Management System Block Diagram Model.” Finally, through the study of practical cases of government to verify the construct’s availability and effectiveness of the Institute "Integrated Information Security Management Assessment Form". Tin-Yu Wu Chin-Feng Lai 吳庭育 賴槿峰 2014 學位論文 ; thesis 151 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立宜蘭大學 === 多媒體網路通訊數位學習碩士在職專班 === 102 === Cloud computing has been the trend in recent years, most of the information system built on the cloud computing services. Therefore cloud security services are concern for cloud service providers and cloud consumer. How to do the relevant security policies is the main challenge to deploy cloud services. Most government institutions have passed ISO 27001 information security management system, and also build private cloud virtural machine technology. It is important to manage the security of cloud computing of Information System Management infrastructure. By various means of this study, it includes observation、records、access the data, etc. It takes qualitative research progress to parse the resulting data. By collected Information Scurity Mangement Sytems-Requirements, Code of practice for Information Scurity Mnagement Sytems, Cloud Security Alliance/ Cloud Control Matrix, private cloud technology. This paper discusses the Integration of ISO 27001 and CSA/CCM (Cloud Security Alliance/Cloud Control Matrix) used in security of private cloud. In comparison with their controls, CSA/CCM increases 42 controls that ISO 27001 is not definition. When the organization adopt private cloud infrastructure, we can considerate to work ISO 27001 with CSA/CCM to build information security environment for the organization. After expert questionnaires by using the Modified Delphi method, the paper creates “Intergration of Information Security Management System Block Diagram Model.” Finally, through the study of practical cases of government to verify the construct’s availability and effectiveness of the Institute "Integrated Information Security Management Assessment Form".
author2 Tin-Yu Wu
author_facet Tin-Yu Wu
Kung Chang
張恭
author Kung Chang
張恭
spellingShingle Kung Chang
張恭
The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government
author_sort Kung Chang
title The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government
title_short The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government
title_full The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government
title_fullStr The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government
title_full_unstemmed The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government
title_sort application by integrating iso 27001 and csa/ccm used in private cloud environment -- a case study of government
publishDate 2014
url http://ndltd.ncl.edu.tw/handle/2ec8sc
work_keys_str_mv AT kungchang theapplicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment
AT zhānggōng theapplicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment
AT kungchang zhěnghéiso27001yǔcsaccmyùnyòngyúsīyǒuyúnzhīyánjiūyǐmǒuzhèngfǔjīguānwèilì
AT zhānggōng zhěnghéiso27001yǔcsaccmyùnyòngyúsīyǒuyúnzhīyánjiūyǐmǒuzhèngfǔjīguānwèilì
AT kungchang applicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment
AT zhānggōng applicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment
_version_ 1719112835276996608