Security Architecture Framework for Enterprises
Date
2021
Authors
Graham, M.
Falkner, K.
Szabo, C.
Yarom, Y.
Editors
Filipe, J.
Smialek, M.
Brodsky, A.
Hammoudi, S.
Smialek, M.
Brodsky, A.
Hammoudi, S.
Advisors
Journal Title
Journal ISSN
Volume Title
Type:
Conference paper
Citation
Lecture Notes in Business Information Processing, 2021 / Filipe, J., Smialek, M., Brodsky, A., Hammoudi, S. (ed./s), vol.417, pp.883-904
Statement of Responsibility
Michelle Graham, Katrina Falkner, Claudia Szabo, Yuval Yarom
Conference Name
International Conference on Enterprise Information Systems (ICEIS) (5 May 2020 - 7 May 2020 : Virtual)
Abstract
Security is a complex issue for organisations, with its management now a fiduciary responsibility as well as a moral one. Without a holistic robust security structure that considers human, organisational and technical aspects to manage security, the assets of an organisation are at critical risk. Enterprise architecture (EA) is a strong and reliable structure that has been tested and used effectively for at least 30 years in organisations globally. It relies on a holistic classification structure for organisational assets. Grouping security with EA promises to leverage the benefits of EA in the security domain. We conduct a review of existing security frameworks to evaluate the extent to which they employ EA. We find that while the idea of grouping security with EA is not new, there is a need for developing a comprehensive solution. We design, develop, and demonstrate a security EA framework for organisations regardless of their industry, budgetary constraints or size; and survey professionals to analyse the framework and provide feedback. The survey results support the need for a holistic security structure and indicate benefits including reduction of security gaps, improved security investment decisions, clear functional responsibilities and a complete security nomenclature and international security standard compliance among others.
School/Discipline
Dissertation Note
Provenance
Description
Access Status
Rights
© Springer Nature Switzerland AG 2021