Publicación: Implementation of an ISMS Based on ISO/IEC 27001:2022 to Improve Information Security in the Internet Services Sector
| dc.contributor.author | Chavez, Stefanny | |
| dc.contributor.author | Anahue, Joel | |
| dc.contributor.author | Ticona, Wilfredo | |
| dc.date.accessioned | 2025-08-11T16:43:52Z | |
| dc.date.issued | 2024 | |
| dc.description.abstract | Information security is currently crucial for all organizations, and the implementation of an Information Security Management System (ISMS) based on ISO/IEC 27001:2022 is presented as a framework of excellence to address threats. cyber and protect information assets. This research will use the MAGERIT methodology to analyze and manage information systems, integrating it with the ISMS to identify assets, analyze risks, determine safeguards, and establish risk treatment measures. As a result of the implementation, there is an increase in confidentiality controls from 9 to 12, and a reduction in incidents from 40 to 12. Likewise, there is an increase in integrity controls from 9 to 15, and a reduction in incidents from 52 to 30. Regarding to availability, there is an increase in controls from 9 to 18 and a decrease in incidents from 49 to 29; thus, demonstrating a successful implementation in the evaluated categories. Finally, it is important to highlight information security in the internet services sector to protect data, mitigate risks, ensure customer trust, and comply with legal regulations in an increasingly threatening digital environment. © 2024 IEEE. | |
| dc.identifier.doi | 10.1109/Confluence60223.2024.10463392 | |
| dc.identifier.scopus | 2-s2.0-85190240554 | |
| dc.identifier.uri | https://cris.esan.edu.pe/handle/20.500.12640/680 | |
| dc.identifier.uuid | 0c1c3ec5-765b-45e1-a894-f0e1278b61eb | |
| dc.language.iso | en | |
| dc.publisher | Institute of Electrical and Electronics Engineers Inc. | |
| dc.relation.ispartof | Proceedings of the 14th International Conference on Cloud Computing, Data Science and Engineering, Confluence 2024 | |
| dc.rights | http://purl.org/coar/access_right/c_14cb | |
| dc.subject | availability | |
| dc.subject | confidentiality | |
| dc.subject | Information Security | |
| dc.subject | integrity | |
| dc.subject | ISMS | |
| dc.subject | ISP | |
| dc.subject | Magerit | |
| dc.subject | risks | |
| dc.subject | vulnerability | |
| dc.title | Implementation of an ISMS Based on ISO/IEC 27001:2022 to Improve Information Security in the Internet Services Sector | |
| dc.type | http://purl.org/coar/resource_type/c_5794 | |
| dspace.entity.type | Publication | |
| oaire.citation.endPage | 189 | |
| oaire.citation.startPage | 184 |