Publication:
Evaluate information security governance frameworks in cloud computing environment using main and sub criteria

dc.citedby4
dc.contributor.authorAl-Hashimi M.en_US
dc.contributor.authorAl-Nidawi W.J.en_US
dc.contributor.authorOthman M.en_US
dc.contributor.authorShakir M.en_US
dc.contributor.authorSulaiman H.en_US
dc.contributor.authorid57195380909en_US
dc.contributor.authorid57190296377en_US
dc.contributor.authorid24824928800en_US
dc.contributor.authorid57057236900en_US
dc.contributor.authorid54903312800en_US
dc.date.accessioned2023-05-29T07:26:38Z
dc.date.available2023-05-29T07:26:38Z
dc.date.issued2019
dc.description.abstractIn spite of the benefits of cloud computing, it is associated with high risks that need an effective security program. Framework of information security governance ensures successful management of information security risk and oversight, and helps to protect an organization's information. However, no standard or common criteria have been specified to help organizations in evaluating and selecting the proper cloud computing information security governance framework. Hence, this paper aims to identified the main and sub criteria to help organizations for evaluating the target frameworks. To achieve this aim, a critical review has been conducted to identify the current frameworks. The related frameworks are analyzed to indicate and identify the main and sub criteria that can be used to evaluate the current frameworks and facilitate the frameworks selection process. All criteria will be subjected to an evaluation process via interviews with specialists to define the criteria significance and capability in evaluating and differentiating the existing frameworks. The interview data is analyzed using content analysis method. The analysis of interviews data has found that all the experts agreed that main and sub criteria are very important, 20% of them indicated that these criteria are essential but lack to other sub-criteria such as awareness, valuation of assets and documents control. Furthermore, 70% of the experts indicated that it is difficult to rank the criteria because they have the same importance. Following that, it is recommended that a considerable work is still needed to specify a proper selection method of a suitable cloud computing information security governance framework based on standard or common criteria. Copyright � 2019 American Scientific Publishers All rights reserved.en_US
dc.description.natureFinalen_US
dc.identifier.doi10.1166/jctn.2019.7989
dc.identifier.epage1006
dc.identifier.issue3
dc.identifier.scopus2-s2.0-85066976374
dc.identifier.spage996
dc.identifier.urihttps://www.scopus.com/inward/record.uri?eid=2-s2.0-85066976374&doi=10.1166%2fjctn.2019.7989&partnerID=40&md5=14d591e0f568e26e891584dd3be844f2
dc.identifier.urihttps://irepository.uniten.edu.my/handle/123456789/24749
dc.identifier.volume16
dc.publisherAmerican Scientific Publishersen_US
dc.sourceScopus
dc.sourcetitleJournal of Computational and Theoretical Nanoscience
dc.titleEvaluate information security governance frameworks in cloud computing environment using main and sub criteriaen_US
dc.typeArticleen_US
dspace.entity.typePublication
Files
Collections