Turkish Journal of Computer and Mathematics Education
Journal license

Journal

Turkish Journal of Computer and Mathematics Education


Volume
& Issue

Volume 13, Issue 2


Published
on


Pages

394-401


DOI

Article

When can we talk about implementing an Information Security Management System, according to ISO 27001?


Authors

Mustapha Bouziani Affiliation:
Phd Faculty of Science KENITRA MOROCCO
, Meriam Merbah Affiliation:
Phd Faculty of Science KENITRA MOROCCO
, Malika Tiskar Affiliation:
Faculty of Science KENITRA MOROCCO
, Aziz Et-Tahir Affiliation:
Professor at High School of Technology Mohamed V University, RABAT, MOROCCO
and Abdelaziz Chaouch Affiliation:
Professor at Department of Organic Chemistry, Catalysis and Environment Laboratory Faculty of Science, Ibn Tofail University - KENITRA, MOROCCO


Abstract

Information Technology is developing at a high pace, but it remains vulnerable to various threats targeting its integrity, confidentiality and availability. Each organization or institution projects its strategic vision for security concerns by focusing on the information system and risk management. Information security or ISMS is at the heart of this strategy and has become a major issue in information systems management. To this end, it is necessary to know and understand the subject of the implementation of an Information Security Management System according to ISO 27001, which aims to protect any institution or organization from possible loss, theft or alteration of data. This procedure not only defends and preserves the computer systems against intrusions or disasters but also ensures its survival. This standard gives the conceptual good practices which are established to supplement the technical measures thanks to its security norm ISO27002, in order to ensure a full-fledged security... Therefore, it is recommended to implement an ISMS based on ISO 27001 when risks related to the security of the company's data could come up.


Keywords

ISMS, Implementation, ISO27001, Information Security, IS, ISO27002, Confidentiality, Integrity and Availability, PDCA, ITIL, PISS, RISS


Citation

Bouziani, M., Merbah, M., Tiskar, M., Et-Tahir, A., & Chaouch, A. (2022). When can we talk about implementing an information security management system, according to ISO 27001? Turkish Journal of Computer and Mathematics Education, 13(2), 394–401.

Published by: Engineering Journals

Engineering Journals Logo