NORMA eResearch @NCI Library

Augmenting The Compliance of ISO 27001 Operations Security by Automating the Manual Change Request Process in a Fin-Tech Environment

Ijaiya, Junaid (2021) Augmenting The Compliance of ISO 27001 Operations Security by Automating the Manual Change Request Process in a Fin-Tech Environment. Masters thesis, Dublin, National College of Ireland.

[thumbnail of Master of Science]
Preview
PDF (Master of Science)
Download (813kB) | Preview
[thumbnail of Configuration manual]
Preview
PDF (Configuration manual)
Download (731kB) | Preview

Abstract

The upgrade of faulty IT infrastructure can result in key system and application disruptions, resulting in security breach which leads to significant financial losses for organisations. This breach can be mitigated or even prevented against with the introduction of a change request process. All phases of the change request procedure should be covered by the change request specification.

A method for specifying change request and aligning it with ISO 27001 operations security is described in this paper. This technique automates the whole phase of the conventional change request procedure starting with the Implementer making the request for change to the assigned owner for approval and down to communication to offer a precise specification of the change request that is closely tied to the software architecture. This is achieved with the design of a process workflow, creation of a web application and integrating both together. This gives a path to proper documentation of scheduled and implemented activities and a trailed change request chain for referral and accurate logging.

Item Type: Thesis (Masters)
Uncontrolled Keywords: Change Request Process; Automation; IT Infrastructure
Subjects: Q Science > QA Mathematics > Electronic computers. Computer science
T Technology > T Technology (General) > Information Technology > Electronic computers. Computer science
T Technology > T Technology (General) > Information Technology
Q Science > QA Mathematics > Electronic computers. Computer science > Computer Systems > Information Storage and Retrieval Systems > Management Information Systems
T Technology > T Technology (General) > Information Technology > Electronic computers. Computer science > Computer Systems > Information Storage and Retrieval Systems > Management Information Systems
Divisions: School of Computing > Master of Science in Cyber Security
Depositing User: Clara Chan
Date Deposited: 19 Oct 2021 15:21
Last Modified: 19 Oct 2021 15:21
URI: https://norma.ncirl.ie/id/eprint/5111

Actions (login required)

View Item View Item