Conference

Authors: Karyda M., Kokolakis S., Kiountouzis E.
Title: Redefining Information Systems Security: Viable Information Systems
Conference: 16th IFIP International Conference on Information Security (SEC 2001)
Editors: M. Dupuy, P. Paradinas
Ed: No
Eds: Yes
Pages: 453-467
To appear: No
Month: June
Year: 2001
Place: Paris, France
Pubisher: Kluwer Academic Publishers
Link:
File name: B2.pdf##^^&&221925015.pdf
Abstract: Research on Information Security has been based on a well-established definition of the subject. Consequently, it has delivered a plethora of methods, techniques, mechanisms and tools to protect the so-called security attributes (i.e. availability, confidentiality and integrity) of information. However, modern Information Systems (IS) appear rather vulnerable and people show mistrust on their ability to deliver the services expected. This phenomenon leads us to the conclusion that information security does not necessarily equal IS security. In this paper, we argue that IS security, contrary to information security, remains a confusing term and a neglected research area. We attempt to clarify the meaning and aims of IS security and propose a framework for building secure information systems, or as we suggest them to be called, viable information systems.