The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government
碩士 === 國立宜蘭大學 === 多媒體網路通訊數位學習碩士在職專班 === 102 === Cloud computing has been the trend in recent years, most of the information system built on the cloud computing services. Therefore cloud security services are concern for cloud service providers and cloud consumer. How to do the relevant security poli...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2014
|
Online Access: | http://ndltd.ncl.edu.tw/handle/2ec8sc |
id |
ndltd-TW-102NIU01652007 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-102NIU016520072019-05-15T21:23:12Z http://ndltd.ncl.edu.tw/handle/2ec8sc The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government 整合ISO 27001與CSA/CCM運用於私有雲之研究--以某政府機關為例 Kung Chang 張恭 碩士 國立宜蘭大學 多媒體網路通訊數位學習碩士在職專班 102 Cloud computing has been the trend in recent years, most of the information system built on the cloud computing services. Therefore cloud security services are concern for cloud service providers and cloud consumer. How to do the relevant security policies is the main challenge to deploy cloud services. Most government institutions have passed ISO 27001 information security management system, and also build private cloud virtural machine technology. It is important to manage the security of cloud computing of Information System Management infrastructure. By various means of this study, it includes observation、records、access the data, etc. It takes qualitative research progress to parse the resulting data. By collected Information Scurity Mangement Sytems-Requirements, Code of practice for Information Scurity Mnagement Sytems, Cloud Security Alliance/ Cloud Control Matrix, private cloud technology. This paper discusses the Integration of ISO 27001 and CSA/CCM (Cloud Security Alliance/Cloud Control Matrix) used in security of private cloud. In comparison with their controls, CSA/CCM increases 42 controls that ISO 27001 is not definition. When the organization adopt private cloud infrastructure, we can considerate to work ISO 27001 with CSA/CCM to build information security environment for the organization. After expert questionnaires by using the Modified Delphi method, the paper creates “Intergration of Information Security Management System Block Diagram Model.” Finally, through the study of practical cases of government to verify the construct’s availability and effectiveness of the Institute "Integrated Information Security Management Assessment Form". Tin-Yu Wu Chin-Feng Lai 吳庭育 賴槿峰 2014 學位論文 ; thesis 151 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立宜蘭大學 === 多媒體網路通訊數位學習碩士在職專班 === 102 === Cloud computing has been the trend in recent years, most of the information system built on the cloud computing services. Therefore cloud security services are concern for cloud service providers and cloud consumer. How to do the relevant security policies is the main challenge to deploy cloud services. Most government institutions have passed ISO 27001 information security management system, and also build private cloud virtural machine technology. It is important to manage the security of cloud computing of Information System Management infrastructure.
By various means of this study, it includes observation、records、access the data, etc. It takes qualitative research progress to parse the resulting data. By collected Information Scurity Mangement Sytems-Requirements, Code of practice for Information Scurity Mnagement Sytems, Cloud Security Alliance/ Cloud Control Matrix, private cloud technology. This paper discusses the Integration of ISO 27001 and CSA/CCM (Cloud Security Alliance/Cloud Control Matrix) used in security of private cloud. In comparison with their controls, CSA/CCM increases 42 controls that ISO 27001 is not definition. When the organization adopt private cloud infrastructure, we can considerate to work ISO 27001 with CSA/CCM to build information security environment for the organization.
After expert questionnaires by using the Modified Delphi method, the paper creates “Intergration of Information Security Management System Block Diagram Model.” Finally, through the study of practical cases of government to verify the construct’s availability and effectiveness of the Institute "Integrated Information Security Management Assessment Form".
|
author2 |
Tin-Yu Wu |
author_facet |
Tin-Yu Wu Kung Chang 張恭 |
author |
Kung Chang 張恭 |
spellingShingle |
Kung Chang 張恭 The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government |
author_sort |
Kung Chang |
title |
The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government |
title_short |
The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government |
title_full |
The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government |
title_fullStr |
The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government |
title_full_unstemmed |
The Application by Integrating ISO 27001 and CSA/CCM Used in Private Cloud Environment -- A Case Study of Government |
title_sort |
application by integrating iso 27001 and csa/ccm used in private cloud environment -- a case study of government |
publishDate |
2014 |
url |
http://ndltd.ncl.edu.tw/handle/2ec8sc |
work_keys_str_mv |
AT kungchang theapplicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment AT zhānggōng theapplicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment AT kungchang zhěnghéiso27001yǔcsaccmyùnyòngyúsīyǒuyúnzhīyánjiūyǐmǒuzhèngfǔjīguānwèilì AT zhānggōng zhěnghéiso27001yǔcsaccmyùnyòngyúsīyǒuyúnzhīyánjiūyǐmǒuzhèngfǔjīguānwèilì AT kungchang applicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment AT zhānggōng applicationbyintegratingiso27001andcsaccmusedinprivatecloudenvironmentacasestudyofgovernment |
_version_ |
1719112835276996608 |