Participación en Congresos

El equipo formado por los investigadores Sánchez, L.E., Villafranca, D., Fernández Medina, E. y Piattini, M. y con la colaboración de la división de ciberseguridad MARISMA del grupo Sicaman, ha participado con un artículo denominado Practical Approach of a Secure Management System based on ISO/IEC 17799 dentro del IEEE Computer Society, IEEE International Symposium on Frontiers on Availability, Reliability and Security (ARES 2006), Viena, Austria, 20-22 de Abril de 2006,  Pp. 585-592. ISBN: 0-7695-2567-9, IDSNumber: BEL18, DOI: 10.1109/ARES.2006.94, EID: 2-s2.0-33750931974, WOS: 000237699600076. Core: B

Este documento forma parte de los avances e investigaciones en el campo de la Ciberseguridad desarrolladas por el Grupo GSyA y la división de seguridad MARISMA del Grupo Sicaman.


For enterprises to be able to properly use information and communications technologies, it is necessary to have guides, metrics and tools that allow us to always know the level of our security and the points in which we are not covering it. In small and medium-size enterprises, the application of security standards has an additional problem, that is, the fact that they do not have enough resources to perform an appropriate management. In this article we analyze some of the existing maturity models and we compare them to the maturity model we are applying in practice. Finally we introduce a first approach to a scoreboard which is being developed as part of a security management tool for IT systems. This approach is being directly applied to real cases and it is obtaining a constant improvement in its application.

