Abstract
Information Communication Technology (ICT) services have become increasingly important in today’s business environment with most private and government agencies without sufficient resources and expertise outsourcing their ICT projects to vendors. However, this strategy could invite potentially damaging information security risks (ISRs). Subsequently, a dedicated framework for information security risk management for ICT outsourcing activities needs to be in place to address and manage its related risk factors. The research focuses on managing Information Security Risks (ISRs) in ICT outsourcing projects in a Malaysian environment. The mixed research method, combining the quantitative and qualitative was employed to achieve the research objectives. 110 respondents participated in a survey while focus groups from eight organizations were interviewed. From the quantitative study, the critical information security risks in ICT outsourcing project were identified and ranked. Furthermore, through an exploratory factor analysis, two additional critical Information Security Risk (ISR) factors were discovered, being information security management defects and the challenges of managing unexpected change of service providers...
Metadata
Item Type: | Book Section |
---|---|
Creators: | Creators Email / ID Num. Khidzir, Nik Zulkarnaen UNSPECIFIED |
Subjects: | H Social Sciences > HD Industries. Land use. Labor > Management. Industrial Management |
Divisions: | Universiti Teknologi MARA, Shah Alam > Institut Pengajian Siswazah (IPSis) : Institute of Graduate Studies (IGS) |
Series Name: | IPSis Biannual Publication |
Volume: | 4 |
Number: | 4 |
Keywords: | Abstract; Abstract of thesis; Newsletter; Research information; Doctoral graduates; IPSis; IGS; UiTM; risk management |
Date: | 2013 |
URI: | https://ir.uitm.edu.my/id/eprint/19129 |
Download
ABS_NIK ZULKARNAEN KHIDZIR TDRA VOL 4 IGS 13.pdf
Download (1MB) | Preview