Authors:
Luís Enrique Sánchez
1
;
Daniel Villafranca
1
;
Eduardo Fernández-Medina
2
and
Mario Piattini
2
Affiliations:
1
SICAMAN NT, Spain
;
2
University of Castilla-La Mancha, Spain
Keyword(s):
ISMS, SME, Maturity Model, Risk Analysis.
Related
Ontology
Subjects/Areas/Topics:
Applications
;
Applications and Software Development
;
Component-Based Software Engineering
;
Embedded Communications Systems
;
Enterprise Software Technologies
;
Maintenance
;
Model-Driven Software Development
;
Operational Research
;
Pattern Recognition
;
Real-Time Software
;
Reliable Software Technologies
;
Software Architectures
;
Software Economics
;
Software Engineering
;
Telecommunications
;
User Modeling
;
Web Information Systems and Technologies
;
Web Interfaces and Applications
Abstract:
For enterprises to be able to use information technologies and communications with guarantees, it is necessary to have an adequate security management system and tools which allow them to manage it. In addition, security management system must have highly reduced costs for its implementation and maintenance in small and
medium-sized enterprises (from here on refered to as SMEs) to be feasible. In this paper, we will show the tool we have developed using our model for the development, implementation and maintenance of a security management system, adapted to the needs and resources of a SME. Furthermore, we will state how this tool lets enterprises with limited resources manage their security system very efficiently. This approach is being directly applied to real cases, thus obtaining a constant improvement in its application.