Journal & Conference Proceeding Publications



ID Code : CSC 0028
Title : Enhancement of Asset Value Classification for Mobile Devices
Author/s : Ahmad Ismadi Yazid Sukaimi
Faizal M.A; Rabiah Ahmad
S. Shahrin
Solahuddin Shamsuddin
Abstract : Information in mobile devices is an asset like other important business assets, is essential to an organization's business and consequently needs to be suitably protected. The use of mobile devices involves the sharing of its functions between the official and personal use of the data in the same device. The organization needs to perform a risk assessment in order to determine the organization's mobile devices exposure to risk and determine the best way to manage this. The determination of risk within the methodology is based upon the standard formula, which the risk is calculated from the multiplication of the asset value, threats and vulnerability. The ISO 27001 requires is that `An appropriate risk assessment shall be undertaken'. The purpose of this study is to introduce enhancement ways to measure the value of a mobile device using ISO 27001 assets management methodology and mobile device categorization methodology.
Publication : Proceeding of International Conference on Cyber Security, Cyber Warfare and Digital Forensic
Year Published : 2012|106-110|IEEE Conference Proceeding
PDF / Official URL : http://ieeexplore.ieee.org/xpl