ISSN 2079-3537      

 
 
 
                                                                                                                                                                                                                                                                                                                                                                                                                                                                             
Scientific Visualization
Issue Year: 2017
Quarter: 4
Volume: 9
Number: 5
Pages: 117 - 136
Article Name: VISUALIZATION OF INFORMATION SECURITY MANAGEMENT PROCESSES
Authors: N.G. Miloslavskaya (Russian Federation), A.I. Tolstoy (Russian Federation)
The paper is recommended by program committee of International Conference «Visual Analytics»
Address: N.G. Miloslavskaya
ORCID 0000-0002-1231-1805
NGMiloslavskaya@mephi.ru
National Research Nuclear University MEPhI Moscow Engineering Physics Institute, Russian Federation

A.I. Tolstoy
ORCID 0000-0001-9265-1510
AITolstoj@mephi.ru
National Research Nuclear University MEPhI Moscow Engineering Physics Institute, Russian Federation
Abstract: The article substantiates the need to visualize information about the information security (IS) management processes that help to make informed decisions about their timely adjustment to improve the security of these objects. The structure of the processes of the IS maintenance system (ISMaS) is presented. The main processes of IS management – planning, implementation, control and improvement – are described and their connections with other IS processes are shown. Information on the IS management processes, where its visualization is particularly useful, is determined. The example of the "ISMaS Planning as a single process" process presents visualization of information of all its subprocesses, namely "Object description", "Assets identification", "IS threat analysis", "Selection of IS threats", "IS threat description", "IS risk management", "IS Policy development" and "Internal IS documents development". Two directions of the further research are specified in the conclusion.
Language: English
DOI: http://doi.org/10.26583/sv.9.5.10


Open Article
 
Open Article
in Russian translation
   Download ZIP archive
 
Download ZIP archive
in Russian translation