Design of an Academic CSIRT–A Proposal Based on Strategic Planning Principles
Abstract:
This work aims to design and implement an organizational model that supports the macro processes of an academic institution in response to computer incidents to raise the level of information security. This study intends to include the research, development, and innovation (R&D&I) in an academic CSIRT. To achieve this, we developed a systematic literature review using the guidance of Barbara Kitchenham through a broad search for information, which allows us to identify the characteristics of the different types of organizations, services, infrastructure, and procedures to design and implement Academic CSIRTs. We then apply the science of design with its specific guidelines for evaluation and iteration within research projects and carry out improvement and knowledge construction. Specifically, we employed the European Network and Information Security Agency (ENISA) guides and the Forum of Incident …
Año de publicación:
2022
Keywords:
Fuente:

Tipo de documento:
Other
Estado:
Acceso abierto
Áreas de conocimiento:
- Ciencias de la computación
Áreas temáticas:
- Funcionamiento de bibliotecas y archivos
- Educación
- Dirección general