
Journal Information
|
| Research Areas |
| Publication Ethics and Malpractice Statement |
| Guidelines for Authors |
| For Authors |
| Instructions to Authors |
| Copyright forms |
| Submit Manuscript |
| Call for papers |
| Download Cover Letter |
| Guidelines for Reviewers |
| For Reviewers |
| Review Forms |
| Contacts and Support |
| Support and Contact |
| List of Issues |
Journal of Emerging Trends in Economics and Management Sciences (JETEMS)
ISSN: 2141-7024
| Abstract: International Organization for Standardization (ISO) and IEC- International Electrotechnical Commission formally released the updates to ISO/IEC 27001 and 27002. The last time these standards were updated was in 2005. Even though ISO/IEC 27001:2005 generally talked about monitoring the ISMS implementation, it did not clearly specify importance of having a formal documented plan or justification for monitoring specific processes and controls. The revised version of ISO/IEC 27001:2013 has set the stage for significant structural changes in the standard?s individual sections with the introduction of alterations as well the number of new information security controls. Even though the text and requirements from the previous version of the standard are still there, they have been adapted to fit new and growing topics. This paper presents study and comparison of the previous and new standards and tries to identify alignment of information security with enterprise risk management using the new version of the standard. This would enable organizations in improving corporate governance and information security risk management with Enterprise Risk Management activities. |
| Keywords: ISMS, ISO27001:2013, corporate governance, enterprise risk, Strategic risk management |
| Download full paper |

Copyright © 2020 Journal of Emerging Trends in Economics and Management Sciences (JETEMS)