Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik

Nowadays, access to reliable information has become an essential factor leading to success in business. In this regard, adequate security of information and systems that process it is critical to the operation of all organizations. Therefore organizations must understand and improve the current stat...

Full description

Saved in:
Bibliographic Details
Main Author: Abdul Malik, Norkhamsiah
Format: Thesis
Language:English
Published: 2015
Subjects:
Online Access:https://ir.uitm.edu.my/id/eprint/63265/1/63265.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my-uitm-ir.63265
record_format uketd_dc
spelling my-uitm-ir.632652022-08-05T03:32:58Z Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik 2015-07 Abdul Malik, Norkhamsiah Internet Protocol multimedia subsystem. Multimedia communications Nowadays, access to reliable information has become an essential factor leading to success in business. In this regard, adequate security of information and systems that process it is critical to the operation of all organizations. Therefore organizations must understand and improve the current status of their information security in order to ensure business continuity in the future. Hence, a research was conducted using Information Security Management System (ISMS) standards as reference model to highlight the practices applied in handling network threats at Telekom Malaysia Berhad (TM) organisation focusing on IPCore Network. This study addressed the control failures or weaknesses during information security incident management practice applied in organisations. This research had shown the relationship between control failure and the incident management system practice that have been applied in TM organisation. During this research, interview sessions were conducted as methodology mechanism, which involving three respondents who are responsible in incident management system environment in TM organisation. By using content analysis, the finding revealed best practice elements that there are involved the process of identifying the incidents, prioritizing incidents based on business impact, tracking incidents to closure, integrating with major IT management systems, and implementing the best practices guidelines and lesson learnt for future improvement. An effective incident management system should be capable of handling incidents event starting from planning and preparing until lesson learnt process. Therefore, this study revealed the TM organisation practice on activities throughout the incident management process, assessment issues faced during handling incident process, and determinant elements influencing the information security management system. Thus, this research proposed future recommendations for ensuring the optimization on incident management process performance effectiveness and efficiency. The adoption of the practice presented in the paper may enable similar telecommunication industry in building the capacity to better manage information security management system with precising the incident management system domain specifically. 2015-07 Thesis https://ir.uitm.edu.my/id/eprint/63265/ https://ir.uitm.edu.my/id/eprint/63265/1/63265.pdf text en public masters Universiti Teknologi MARA Faculty of Computer and Mathematical Sciences Gian Singh, Jasber Kaur (Dr.)
institution Universiti Teknologi MARA
collection UiTM Institutional Repository
language English
advisor Gian Singh, Jasber Kaur (Dr.)
topic Internet Protocol multimedia subsystem
Multimedia communications
spellingShingle Internet Protocol multimedia subsystem
Multimedia communications
Abdul Malik, Norkhamsiah
Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik
description Nowadays, access to reliable information has become an essential factor leading to success in business. In this regard, adequate security of information and systems that process it is critical to the operation of all organizations. Therefore organizations must understand and improve the current status of their information security in order to ensure business continuity in the future. Hence, a research was conducted using Information Security Management System (ISMS) standards as reference model to highlight the practices applied in handling network threats at Telekom Malaysia Berhad (TM) organisation focusing on IPCore Network. This study addressed the control failures or weaknesses during information security incident management practice applied in organisations. This research had shown the relationship between control failure and the incident management system practice that have been applied in TM organisation. During this research, interview sessions were conducted as methodology mechanism, which involving three respondents who are responsible in incident management system environment in TM organisation. By using content analysis, the finding revealed best practice elements that there are involved the process of identifying the incidents, prioritizing incidents based on business impact, tracking incidents to closure, integrating with major IT management systems, and implementing the best practices guidelines and lesson learnt for future improvement. An effective incident management system should be capable of handling incidents event starting from planning and preparing until lesson learnt process. Therefore, this study revealed the TM organisation practice on activities throughout the incident management process, assessment issues faced during handling incident process, and determinant elements influencing the information security management system. Thus, this research proposed future recommendations for ensuring the optimization on incident management process performance effectiveness and efficiency. The adoption of the practice presented in the paper may enable similar telecommunication industry in building the capacity to better manage information security management system with precising the incident management system domain specifically.
format Thesis
qualification_level Master's degree
author Abdul Malik, Norkhamsiah
author_facet Abdul Malik, Norkhamsiah
author_sort Abdul Malik, Norkhamsiah
title Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik
title_short Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik
title_full Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik
title_fullStr Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik
title_full_unstemmed Investigating the practices of information security incident management system in networks threats: a case in TM's IPCore Network / Norkhamsiah Abdul Malik
title_sort investigating the practices of information security incident management system in networks threats: a case in tm's ipcore network / norkhamsiah abdul malik
granting_institution Universiti Teknologi MARA
granting_department Faculty of Computer and Mathematical Sciences
publishDate 2015
url https://ir.uitm.edu.my/id/eprint/63265/1/63265.pdf
_version_ 1783735301690097664