Dear all,
We have submitted a paper on “Method for Evaluating Organisations’ Information Security
Level” to the 16th International Conference on Research Challenges in Information Science
(RCIS 2022). If accepted, we will acknowledge SPARTA.
Authors: Mari Seeba, Sten Mases and Raimundas Matulevicius
Abstract:
This paper introduces a method for evaluating information security levels of organisations
using a benchmarking tool. The framework supporting the tool is based on Estonian
Information Security Standard (which in turn is adapted from German Federal Office of
Information Security BSI IT-Grundschutz) categories and compatible with ISO 27001
Information Security Management System standard. The tool covers both technical and
organisational aspects of information security. Using the publicly available tool takes
around 60 minutes and gives quick feedback about the information security level of the
organisation. The results can be used to give an overview of security to the
organisation’s management, compare different organisations across the region, and support
strategic decision-making on a national level.
Best greetings,
Mari and Raimundas