| Literature DB >> 24701137 |
Knut Haufe1, Srdan Dzombeta1, Knud Brandis1.
Abstract
Cloud computing is actually one of the most popular themes of information systems research. Considering the nature of the processed information especially health care organizations need to assess and treat specific risks according to cloud computing in their information security management system. Therefore, in this paper we propose a framework that includes the most important security processes regarding cloud computing in the health care sector. Starting with a framework of general information security management processes derived from standards of the ISO 27000 family the most important information security processes for health care organizations using cloud computing will be identified considering the main risks regarding cloud computing and the type of information processed. The identified processes will help a health care organization using cloud computing to focus on the most important ISMS processes and establish and operate them at an appropriate level of maturity considering limited resources.Entities:
Mesh:
Year: 2014 PMID: 24701137 PMCID: PMC3950467 DOI: 10.1155/2014/146970
Source DB: PubMed Journal: ScientificWorldJournal ISSN: 1537-744X
Figure 1ISMS process framework.
Figure 2Risk map.
Figure 3Resources needed to conduct customer audits.