Information Systems Security and Control - PowerPoint PPT Presentation

1 / 14
About This Presentation
Title:

Information Systems Security and Control

Description:

Opposite forces: ease of use of a system. No perfect systems no system without hidden bugs ... Degree of exposure. Ease of intercept radio frequency bands. Hacker ... – PowerPoint PPT presentation

Number of Views:43
Avg rating:3.0/5.0
Slides: 15
Provided by: hong151
Category:

less

Transcript and Presenter's Notes

Title: Information Systems Security and Control


1
Information Systems Security and Control
  • Chapter 13

2
Scalability and Stress Tests
  • CNN web traffic during the presidential election
    ? Times more
  • Performance failure often accompany a web sites
    success
  • Scalability
  • Wealth effect
  • vulnerability

3
Balanced systems
  • Neither over-controlled nor under-controlled
  • Opposite forces ease of use of a system
  • No perfect systems no system without hidden
    bugs
  • No free lunch no system without constant
    maintenance and modification

4
fragility
  • Health and Normal usage
  • No drink, no food, etc
  • Fire, flood,
  • User errors
  • Program changes
  • Electrical surge or outage
  • Hardware and software failure

5
maliciousness
  • Unauthorized access
  • Degree of exposure
  • Ease of intercept radio frequency bands
  • Hacker
  • Computer viruses antivirus software

6
Look no further
  • Human error ignorant and self protection
  • System error defected system and complicated
    setting
  • Shallow and weak foundation domino effects and
    man-made disasters

7
Preparedness
  • Security and quality according to the importance
    of the data and operation
  • Visa USA systems duplicated systems and
    fault-tolerant computer systems
  • A dental office patients management system

8
Controls
  • General controls
  • Application controls

9
General controls
  • Controls over the system implementation process
  • Software controls
  • Physical hardware controls
  • Computer operations controls
  • Data security controls
  • Administrative disciplines, standards, and
    procedures

10
Application controls
  • Input controls
  • Control totals
  • Edit checks
  • Processing control
  • Run control totals
  • Computer pattern matchings
  • Output control

11
Security and E-commerce
  • Encryption
  • Public key encryption
  • Authentication
  • Message integrity
  • Digital signature
  • Digital certificate

12
E-payment systems
  • Digital wallet
  • E-cash
  • Electronic check
  • Smart card

13
System quality
  • Rigorous methodologies in system development
  • Spent more on front end right system analysis,
    specification, and design - to reduce cost on
    the back end rework, and maintenance
  • Use software metrics to assess system performance
    continuously

14
System audit
  • Surveying end users for their perceptions of data
    quality and system performance
  • Surveying entire data files
  • Surveying samples from data files
Write a Comment
User Comments (0)
About PowerShow.com