[论文解读] Information systems security in special and public libraries: an assessment of status
本研究使用图书馆信息系统安全评估模型(LISSAM)对马来西亚特殊图书馆和公共图书馆的信息系统安全进行评估,该模型是一种结构化的评估工具。研究发现,技术防护措施实施程度较高(95%为高实施水平),但组织性措施薄弱,54%的图书馆因安全程序、管理工具和意识提升项目不足而得分偏低。
Explores the use of an assessment instrument based on a model named library information systems security assessment model (LISSAM) to assess the 155 status in special and public libraries in Malaysia. The study aims to determine the implementation status of technological and organizational components of the LISSAM model. An implementation index as well as a scoring tool is presented to assess the IS safeguarding measures in a library. Data used was based on questionnaires distributed to a total of 50 individuals who are responsible for the information systems (IS) or IT in the special and public libraries in Malaysia. Findings revealed that over 95% of libraries have high level of technological implementation but 54% were fair poorly on organizational measures, especially on lack of security procedures, administrative tools and awareness creation activities.
研究动机与目标
- 评估马来西亚特殊图书馆与公共图书馆当前的信息系统安全状况。
- 评估LISSAM模型中技术与组织组件的实施情况。
- 识别图书馆信息系统环境中安全程序、管理工具及意识活动方面的差距。
- 开发并验证一个实施指数与评分工具,用于衡量图书馆信息系统的防护措施。
提出的方法
- 开发图书馆信息系统安全评估模型(LISSAM)作为全面的评估框架。
- 设计并分发结构化问卷给马来西亚50名图书馆IT或信息系统人员。
- 使用实施指数与评分工具量化技术与组织性安全措施。
- 数据收集聚焦于技术控制措施(如防火墙、访问控制)与组织性实践(如政策、培训、审计)。
- 对调查结果进行统计分析,以确定各图书馆的技术与组织性措施实施水平。
- 根据得分对图书馆进行分类,以评估整体安全态势并识别主要缺陷。
实验结果
研究问题
- RQ1马来西亚特殊图书馆与公共图书馆在信息系统安全的技术组件方面实施程度如何?
- RQ2安全政策、管理工具及意识提升项目等组织性措施在这些图书馆中的有效性如何?
- RQ3LISSAM模型在马来西亚图书馆中的整体实施状况如何?
- RQ4在技术与组织维度之间,信息系统安全实践的主要差距是什么?
- RQ5实施指数与评分工具在评估图书馆环境中信息系统安全方面的表现如何?
主要发现
- 超过95%的被评估图书馆在技术安全措施方面表现出高水平的实施。
- 仅有46%的图书馆在组织性安全措施方面达到令人满意的水平,表明存在显著缺陷。
- 54%的图书馆在组织性组件上得分偏低,主要原因是缺乏正式的安全程序。
- 在使用管理工具(如安全审计与风险评估)方面存在显著差距。
- 意识提升活动(如员工培训与安全宣传)大多缺失或发展不足。
- LISSAM模型及其相关实施指数被证明在识别技术与组织性安全准备程度差异方面具有有效性。
更好的研究,从现在开始
从阅读论文到最终审阅,大幅缩短您的研究时间。
无需绑定信用卡
本解读由 AI 生成,并经人工编辑审核。