Comparative analysis between different methodologies for performing computer security audits, applying the hierarchical analytical process (Ahp).
Abstract:
Due to the threats and risks to which IT assets are exposed in organizations, it becomes very important to have control and supervision tools. The purpose of this work is to determine the most appropriate methodology for performing computer security audits for data network infrastructure in companies in the industrial fishing sector of the Manta canton; through a comparative analysis between several alternatives using two methods of comparison by pairs or multicriteria. This work is part of a research project on methodologies for computer auditing. As a result, it was possible to confirm that the alternative most appropriate to the characteristics of the sector is OSSTMM, due to its medium complexity and easy implementation in those organizations that initiate restructuring processes of computer security models.
Año de publicación:
2021
Keywords:
- availability
- Methodology
- Confidentiality
- AHP
- Osstmm
- Integrity
Fuente:
Tipo de documento:
Article
Estado:
Acceso restringido
Áreas de conocimiento:
- Ciencias de la computación
- Auditoría
Áreas temáticas:
- Métodos informáticos especiales
- Programación informática, programas, datos, seguridad
- Criminología