Title :
A Practical Approach for Risk Assessment of Data Leakage Prevention in Telecommunication Industry
Author_Institution :
Dept. of Syst. Eng., Beihang Univ., Beijing, China
Abstract :
Recently more incidents caused by improper data leakage prevention have occurred in many organizations which have been suffering a huge loss. The study of data leakage prevention is receiving considerable attention for reasons of privacy protection of personally identifiable information, preservation of an organization´s brand and reputation, retention of intellectual capital. It is very challenging for senior management in telecommunication industry to identify, analyze and properly treat the data leakage risks due to the complexity and diversities of business process and supportive information systems. In this paper a practical method of risk assessment aimed to analyze and evaluate the risks of data leakage protection related to customer information in telecommunication company is presented, and the distribution view and transition view have been defined to describe and analyze the customer information which provides the basis for the risk assessment. A group of technical tests are proposed to find and verify the risky vulnerabilities which have been identified based on the method.
Keywords :
data privacy; risk management; telecommunication industry; customer information; data leakage prevention; information systems; intellectual capital retention; organization brand preservation; organization reputation preservation; personally identifiable information; privacy protection; risk assessment; telecommunication industry; Communications technology; Companies; ISO standards; Industries; Information security; Risk management; customer information view; data leakage prevention; penetration testing; risk assessment;
Conference_Titel :
E-Business and E-Government (ICEE), 2010 International Conference on
Conference_Location :
Guangzhou
Print_ISBN :
978-0-7695-3997-3
DOI :
10.1109/ICEE.2010.893