Information security in implementing web applications for small businesses based on COBIT5-SI [Seguridad de la Información en la implementación de aplicaciones web para pequeñas empresas en base a COBIT5-SI]

The Information Security is one of the preventive measures to take account for the proper functioning of applications in small and medium enterprises in Ecuador, thus ensuring reliability, availability and integrity of assets, primarily within their web applications measures. This work is based on t...

Full description

Saved in:
Bibliographic Details
Main Author: Salazar, K. (author)
Other Authors: Guaman Bastidas, F. (author), Jaramillo Hurtado, D. (author)
Format: article
Published: 2015
Subjects:
Online Access:http://10.1109/CISTI.2015.7170390
http://dspace.utpl.edu.ec/handle/123456789/19030
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:The Information Security is one of the preventive measures to take account for the proper functioning of applications in small and medium enterprises in Ecuador, thus ensuring reliability, availability and integrity of assets, primarily within their web applications measures. This work is based on the integration of the governance framework for Cobit5-SI safety, UWE modeling methodology and open security OWASP project, obtaining the best practices for evaluating the Information Security in implementing web applications these companies. Similarly, the selection of these practices was conducted with the integration of the ISF, ISO / IEC 27001, ISO / IEC 27002, ITIL and NIST.