Information security management frameworks and strategies in higher education institutions: a systematic review

  • Jorge Merchan-Lima
  • , Fabian Astudillo-Salinas (Corresponding Author)
  • , Luis Tello-Oquendo
  • , Franklin Sanchez
  • , Gabriel Lopez-Fonseca
  • , Dorys Quiroz

Research output: Contribution to journalArticlepeer-review

36 Scopus citations

Abstract

Effective information security management (ISM) practices to protect the information assets of organizations from security intrusions and attacks is imperative. In that sense, a systematic literature review of academic articles focused on ISM in higher education institutions (HEIs) is conducted. For this purpose, an empirical study was performed. Studies carried out from 2012 onward reporting results from HEIs data that perform the ISM through various means, such as a set of framework functions, implementation phases, infrastructure services, and securities to their assets, have been explored. The articles found were then analyzed following a methodological procedure consisting of a systematic mapping study with their research questions, inclusion and exclusion criteria, selection of digital libraries, and analysis of the respective search strings. A set of competencies, resources, directives, and strategies that contribute to designing and to developing an ISM framework (ISMF) for HEIs is identified based on standards such as ISO 27000, COBIT, ITIL, NIST, and EDUCAUSE. This study introduces a strategic reference that guides HEIs on the development of an ISMF and provides recommendations that should be considered for its implementation in an era of ever-evolving security threats.

Original languageEnglish
Pages (from-to)255-270
Number of pages16
JournalAnnales des Telecommunications/Annals of Telecommunications
Volume76
Issue number3-4
DOIs
StatePublished - Apr 2021

UN SDGs

This output contributes to the following UN Sustainable Development Goals (SDGs)

  1. SDG 7 - Affordable and Clean Energy
    SDG 7 Affordable and Clean Energy
  2. SDG 9 - Industry, Innovation, and Infrastructure
    SDG 9 Industry, Innovation, and Infrastructure
  3. SDG 12 - Responsible Consumption and Production
    SDG 12 Responsible Consumption and Production

Keywords

  • Framework
  • Higher education institution
  • Information security
  • ISMF

Fingerprint

Dive into the research topics of 'Information security management frameworks and strategies in higher education institutions: a systematic review'. Together they form a unique fingerprint.

Cite this