ABSTRACT

The rapid advancement of Information and Communications Technology (ICT) and the growing dependence of organizations on ICT continuously intensify concern on information security. Although, most ICT systems are designed to have a considerable amount of strength in order to sustain and assist organizations in protecting information from security threats, they are not completely immune from the threats. In contrast, Standish Group stated that many ICT projects in the US, including ISMS standardizing and ISO 27001 compliance in major organizations, faced difficulties, with many having reported failure and only around one in eight ICT projects attempting to standardize information security were successful. To make sure the effectiveness of the framework Integrated Solution Framework and its implementation Integrated Solution Modeling in assisting organizations, the authors conducted comprehensive testing on the reliability, usability, and performance in respondent organizations in the field of telecommunications, banking & finance, airlines, and ICT-security consultancy. The chapter also presents some of the key concepts discussed in the book.