Ranking the barriers of implementing Information Security Management System and Investigation of readiness rate of exploration management

نویسندگان

1 Assistant Prof., Payam Noor University, Iran

2 Associate Prof., Department of Business Administration & MBA, Payame Noor University, PO Box 19395-3697 Tehran, Iran

3 MSc. Student, Information Technology Management, Payam Noor University, Tehran, Iran

4 Ph.D. Candiate, University of Tehran, Iran

doi
10.22059/jitm.2015.52454
چکیده

As information has the role of organization asset, its protection is the key to the survival of any organization. Information Security Management System (ISMS) defines protection of information in three specific concepts: information confidentiality, accuracy, and availability. Many failures in implementing ISMS rooted in organizational problems and lack of attention to the state of readiness of the organization before implementation. A descriptive design (method) was used to perform the study. Barriers to implementing ISMS were ranked based on analytical hierarchical process and organization’s readiness rate to implement ISMS was determined by questionnaire. The results indicate that the non-compliance of organizational structure with the ISMS requirements is the most important barrier and employee’s fear of difficulties of these processes is lowest important barrier. In addition, the readiness rate of exploration management in the ISMS implementation is lower than average.