Title :
Governance of Information Security Elements in Service-Oriented Enterprise Architecture
Author :
Korhonen, Janne J. ; Yildiz, Mehmet ; Mykkanen, Juha
Author_Institution :
Dept. of Comput. Sci. & Eng., Helsinki Univ. of Technol., Helsinki, Finland
Abstract :
This paper identifies and analyzes governance roles and tasks in SOA security governance at macro level. Drawing from Information security management standards and frameworks on one hand and SOA considerations on the other hand, the identified governance elements are mapped to a governance structure that specifies planning and execution aspects at four organizational decision-making levels, resulting in a prescriptive model with practical relevance. This constructive study combines theoretical models and standards with industry experience of the authors.
Keywords :
business data processing; security of data; software architecture; SOA security governance; information security elements; information security management standards; organizational decision-making levels; service-oriented enterprise architecture; IEC standards; ISO standards; Information management; Information security; Resource management; Risk management; Semiconductor optical amplifiers; Service oriented architecture; Standards organizations; Web services; information security management (ISM); security;
Conference_Titel :
Pervasive Systems, Algorithms, and Networks (ISPAN), 2009 10th International Symposium on
Conference_Location :
Kaohsiung
Print_ISBN :
978-1-4244-5403-7
DOI :
10.1109/I-SPAN.2009.158