A Comparative Study on Information Security Institutions and Crisis Management Mechanisms between Taiwan and Republic of China

Autor: Lawrence Chiang, 江偉儀
Rok vydání: 2005
Druh dokumentu: 學位論文 ; thesis
Popis: 93
Due to the variable virus and hacker attacks, to build up the proactive defense is important for the information security environment. For the national security, the government not only should protect the national information technology infrastructure, but also promote the ability of awareness, information sharing, and emergency responses for the information security crisis management. This thesis is to compare the information security institutions and crisis management mechanisms between Taiwan and Republic of China, and to compare practical and theoretical methods of the information security crisis management between Taiwan and Republic of China. This study takes the method of documentary analysis, and interviews with information security experts to analyze the organization architectures, business processes of information security institutions and the crisis management mechanisms between Taiwan and Republic of China. Besides, according to the case study of information security crisis management, we can find the difference between the practical and theoretical methods for the information security crisis management in Taiwan and Republic of China. This study provides the conclusions as follows: 1.In order to promote the ability of information security crisis management, the two governments have specific information security institutions in charge of the emergency responses and information sharing of information security accidents. In Taiwan, the information security crisis management mechanism has better processes for prevention, responses and forensics of the information security crisis. In Republic of China, the crisis management processes focus on the analysis, monitor and response of the information security accidents. 2.As for the comparison of crisis management between theoretical and practical methods, we find that the information security crisis plan, to prevent from the crisis spreading, and to solve the crisis quickly is well done for the information security institutions in Taiwan and Republic of China. The other three stages of crisis management including to prevent the crisis from happening, to find the potential crisis, and to transfer the crisis into the opportunity are needed to be enhanced for the information security institutions in Taiwan and Republic of China. Keywords: information security, crisis management
Databáze: Networked Digital Library of Theses & Dissertations