Wolden, Mark, Valverde, Raul ORCID: https://orcid.org/0000-0002-8769-4927 and Talla, Malleswara (2015) The effectiveness of COBIT 5 Information Security Framework for reducing Cyber Attacks on Supply Chain Management System. IFAC-PapersOnLine, 48 (3). pp. 1846-1852. ISSN 2405-8963
Preview |
Text (application/pdf)
535kB1-s2.0-S2405896315005947-main.pdf - Published Version Available under License Creative Commons Attribution Non-commercial No Derivatives. |
Official URL: https://doi.org/10.1016/j.ifacol.2015.06.355
Abstract
Cyber espionage and malware attacks pose a great danger to many organisations, particularly those that embrace the use of modern technology to enhance efficiency. Although new off-the-shelf applications for enterprise resources planning (ERP) and management provide higher availability and better service, they are often customised, that can leave some scope for security gaps. While organisations have put in place tight security measures, malicious end users use security loopholes found in various systems to commit common cybercrimes such as denial of services, web hacking and defacement, malware, spam and phishing. The Supply Chain Management System (SCMS) is no stranger to such cybercrimes and certainly requires an Information Systems (IS) Security Framework in fighting off malware attacks. This paper investigates the effectiveness of the implementation of the COBIT 5 Information Security Framework in the reduction of risk of Cyber Attacks on SCMS. In this effort, qualitative data was gathered for a comprehensive security questionnaire targeted to IS administrators and managers responsible for Supply Chain organizations that use COBIT 5 framework for security. The results indicated that COBIT 5 added a new dimension for IS security governance via strict policies and rule set that further strengthened enterprise applications security. Overall, we found that organization benefited from implementing the COBIT 5 framework security measures in SCMS and ERP systems.
Divisions: | Concordia University > John Molson School of Business > Supply Chain and Business Technology Management |
---|---|
Item Type: | Article |
Refereed: | Yes |
Authors: | Wolden, Mark and Valverde, Raul and Talla, Malleswara |
Journal or Publication: | IFAC-PapersOnLine |
Date: | 1 June 2015 |
Digital Object Identifier (DOI): | 10.1016/j.ifacol.2015.06.355 |
Keywords: | Enterprise Resources Planning, Supply Chain Management Systems, COBIT 5, Information Security Framework |
ID Code: | 994767 |
Deposited By: | Raul Valverde |
Deposited On: | 12 Nov 2024 19:32 |
Last Modified: | 12 Nov 2024 19:32 |
Repository Staff Only: item control page