An integrated approach for securing electronic transactions over the Web
The decentralised nature of Web-based information systems demands a careful evaluation of the pantheon of security issues in order to avoid the potential occurrence of business risks that could not be easily mitigated. Understanding that information security is not merely a technical solution implem...
Gespeichert in:
Veröffentlicht in: | Benchmarking : an international journal 2002-05, Vol.9 (2), p.166-181 |
---|---|
Hauptverfasser: | , , , , |
Format: | Artikel |
Sprache: | eng |
Schlagworte: | |
Online-Zugang: | Volltext |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The decentralised nature of Web-based information systems demands a careful evaluation of the pantheon of security issues in order to avoid the potential occurrence of business risks that could not be easily mitigated. Understanding that information security is not merely a technical solution implemented at each endpoint of the inter-organizational application, this paper describes an integrated approach based on a rigorous, multi-level and multi-dimensional model. Having as a starting point the overall business goals and objectives, the model drives the development of a strategy from the lower levels of securing data in storage and transition to the higher levels of business processes. Its use and applicability is demonstrated over "Billing Mall" - a system for electronic bill presentation and payment. |
---|---|
ISSN: | 1463-5771 1758-4094 |
DOI: | 10.1108/14635770210421836 |