ERIC Number: EJ1448449
Record Type: Journal
Publication Date: 2024
Pages: 8
Abstractor: As Provided
ISBN: N/A
ISSN: ISSN-1055-3096
EISSN: EISSN-2574-3872
Available Date: N/A
Teaching Case: Combining Standards to Conduct Risk Assessment at SecureEnd Solutions
Muhammad Al-Abdullah; Alper Yayla; Mohammed Salem Al-Atoum
Journal of Information Systems Education, v35 n4 p461-466 2024
In today's cybersecurity landscape, organizations need frameworks that provide a holistic approach to risk assessment as part of the risk management process. This case introduces SecureEnd Solutions, a rapidly growing cybersecurity company, and its core team, including Alan Touring, Ada Lovecode, Bob Jobs, and Suzan, the head of development. The company must conduct a detailed risk assessment to obtain ISO/IEC 27001 certification using a combination of ISO/IEC 27005:2022 and NIST SP 800-30 guidelines. Students will engage with the characters and the company's technological ecosystem to apply risk assessment standards, enhancing their decision-making, analytical, and problem-solving skills in a real-world scenario.
Descriptors: Risk Assessment, Risk Management, Computer Security, Holistic Approach, Certification, Decision Making, Problem Solving, Relevance (Education), Learning Activities, Computer Software, Case Studies, Consultants, Standards
Journal of Information Systems Education. e-mail: editor@jise.org; Web site: http://www.jise.org
Publication Type: Journal Articles; Reports - Evaluative
Education Level: N/A
Audience: N/A
Language: English
Sponsor: N/A
Authoring Institution: N/A
Grant or Contract Numbers: N/A
Author Affiliations: N/A