A conceptual model for improving information security in higher education institutions Cover Image

Концептуален модел за подобряване на информационна сигурност във висшите учебни заведения
A conceptual model for improving information security in higher education institutions

Author(s): Elena Angelova
Subject(s): Politics / Political Sciences, Politics, Social Sciences, Education, Security and defense, Higher Education
Published by: Институт за знание, наука и иновации ЕООД
Keywords: information security; higher education; model; cyber threats; risk management

Summary/Abstract: Security threat analysis deals with issues such as principles and responsibilities, security threat assessment, risk management, and the method used to neutralize threats. Security risk management involves planning, organizing, managing and controlling resources to ensure that risks are kept within acceptable limits. The development of an effective model for improving information security in higher education should be based on cumulative data and information, and the activity of evaluating its functionality should include a series of organized and planned actions. The built model is based on the following criteria: Risk Management, Information Security Implementation, Cyberspace, Information Security Architecture. The information security model, which will serve for complex crisis management in the event of an attack from cyberspace, has four main vertical axes: People and Identity, Data and Information, Application Security, Infrastructure. The expected benefits of its implementation are of an exceptional nature for the security of the institution: attraction of students and administrative staff, prevention of hacker attacks and loss of reputation, response to evolving security threats, improvement of processes and strategies, protection of data privacy, cost reduction, improvement of organizational culture

Toggle Accessibility Mode