Information Security Risk Assessment for Banking Sector-A Case study of Pakistani Banks

α
dr._usman_munir
dr._usman_munir
σ
Dr. Usman Munir
Dr. Usman Munir
ρ
Irfan Manarvi
Irfan Manarvi
α CASE

Send Message

To: Author

Information Security Risk Assessment for Banking Sector-A Case study of Pakistani Banks

Article Fingerprint

ReserarchID

C41O8

Information Security Risk Assessment for Banking Sector-A Case study of Pakistani Banks Banner

AI TAKEAWAY

Connecting with the Eternal Ground
  • English
  • Afrikaans
  • Albanian
  • Amharic
  • Arabic
  • Armenian
  • Azerbaijani
  • Basque
  • Belarusian
  • Bengali
  • Bosnian
  • Bulgarian
  • Catalan
  • Cebuano
  • Chichewa
  • Chinese (Simplified)
  • Chinese (Traditional)
  • Corsican
  • Croatian
  • Czech
  • Danish
  • Dutch
  • Esperanto
  • Estonian
  • Filipino
  • Finnish
  • French
  • Frisian
  • Galician
  • Georgian
  • German
  • Greek
  • Gujarati
  • Haitian Creole
  • Hausa
  • Hawaiian
  • Hebrew
  • Hindi
  • Hmong
  • Hungarian
  • Icelandic
  • Igbo
  • Indonesian
  • Irish
  • Italian
  • Japanese
  • Javanese
  • Kannada
  • Kazakh
  • Khmer
  • Korean
  • Kurdish (Kurmanji)
  • Kyrgyz
  • Lao
  • Latin
  • Latvian
  • Lithuanian
  • Luxembourgish
  • Macedonian
  • Malagasy
  • Malay
  • Malayalam
  • Maltese
  • Maori
  • Marathi
  • Mongolian
  • Myanmar (Burmese)
  • Nepali
  • Norwegian
  • Pashto
  • Persian
  • Polish
  • Portuguese
  • Punjabi
  • Romanian
  • Russian
  • Samoan
  • Scots Gaelic
  • Serbian
  • Sesotho
  • Shona
  • Sindhi
  • Sinhala
  • Slovak
  • Slovenian
  • Somali
  • Spanish
  • Sundanese
  • Swahili
  • Swedish
  • Tajik
  • Tamil
  • Telugu
  • Thai
  • Turkish
  • Ukrainian
  • Urdu
  • Uzbek
  • Vietnamese
  • Welsh
  • Xhosa
  • Yiddish
  • Yoruba
  • Zulu

Abstract

The ever increasing trend of Information Technology (IT) in organizations has given them new horizon in international market. Organizations now totally depend on IT for better and effective communication and daily operational tasks. Advancements in IT have exposed organization to information security threats also. Several methods and standards for assessment of information security in an organization are available today. Problems with these methods and standards are that they neither provide quantitative analysis of information security nor access potential loses information malfunctioning could create. This paper highlight the necessity of information security tool which could provide quantitative risk assessment along with the classification of risk management controls like management, operational and technical controls in an organizations. It is not possible for organizations to establish information security effectively without knowing the loopholes in their controls. Empirical data for this research was collected from the 5 major banks of Pakistan through two different questionnaires. It is observed that mostly banks have implemented the technical and operational control properly, but the real crux, the information security culture in organization is still a missing link in information security management.

References

18 Cites in Article
  1. Thomas Nowey,Hannes (2007). Federath -Collection of Quantitative Data on Security.
  2. Daniel Port,Rick Kazman,Ann Takenaka Unknown Title.
  3. Fong-Hao Liu (2007). Constructing Enterprise Information Network Security Risk Management Mechanism by Using Ontology.
  4. Ching-Jiang Chen,Ming-Hwa Li (2008). SecConfig: A Pre-Active Information Security Protection Technique.
  5. Lothar Heinz,Gereon Grob,Strauch Christian Buddendick‖ Applications for IT-Risk Management -Requirements and Practical Evaluation‖.
  6. Wade Baker,Linda (2007). Wallace -Is Information Security Under Control? Investigating Quality in Information Security Management‖.
  7. (2006). R isk Management: Implementation principles and Inventories for Risk Management/Risk Assessment method and tools‖.
  8. J Julie,Ryan,J Danel (2008). Ryan -Per formance Metrics for Information Security Risk Management‖.
  9. Xiao Long,Qi Yong,Li (2008). Qianmu -Inf ormation Security Risk Assessment Based On Analytic Hierarchy Process and Fuzzy Comprehensive‖.
  10. K Papadaki,D Polemi (2007). Towards a systematic approach for improving information security risk management methods‖.
  11. Thomas Finne (1996). ) -A DSS for Information Security Analysis: Computer Support in a Company's Risk.
  12. Indra Cahyadi,Erwin Widodo (2008). Public Service Digital Application Risk Assessment using Symantec-cobit 5 Framework: Case Study in Sidoarjo Online Parking System Application.
  13. John Brown,Paul Duguid (2001). Knowledge and Organization: A Social-Practice Perspective.
  14. K Desouza,Y Awazu,P Baloh (2006). Managing Knowledge in Global Software Development Efforts: Issues and Practices.
  15. M Ekstedt (2004). C onsistent Enterprise Software System Architecture for the CIO -A utility-Cost Approach‖.
  16. E Johansson (2005). Assess ment of EIS -An ATD Definition‖.
  17. E Johansson,P Johnson (2005). Assessment of Enterprise Information Security - The Importance of Prioritization.
  18. B Edvardsson (1998). The Need for Critical Thinking in Evaluation of Information‖.

Funding

No external funding was declared for this work.

Conflict of Interest

The authors declare no conflict of interest.

Ethical Approval

No ethics committee approval was required for this article type.

Data Availability

Not applicable for this article.

How to Cite This Article

dr._usman_munir. 1970. \u201cInformation Security Risk Assessment for Banking Sector-A Case study of Pakistani Banks\u201d. Unknown Journal GJCST Volume 10 (GJCST Volume 10 Issue 10): .

Download Citation

Issue Cover
GJCST Volume 10 Issue 10
Pg. 44- 55
Journal Specifications
Keywords
Version of record

v1.2

Issue date

September 30, 2010

Language
en
Experiance in AR

Explore published articles in an immersive Augmented Reality environment. Our platform converts research papers into interactive 3D books, allowing readers to view and interact with content using AR and VR compatible devices.

Read in 3D

Your published article is automatically converted into a realistic 3D book. Flip through pages and read research papers in a more engaging and interactive format.

Article Matrices
Total Views: 20890
Total Downloads: 11139
2026 Trends
Related Research

Published Article

The ever increasing trend of Information Technology (IT) in organizations has given them new horizon in international market. Organizations now totally depend on IT for better and effective communication and daily operational tasks. Advancements in IT have exposed organization to information security threats also. Several methods and standards for assessment of information security in an organization are available today. Problems with these methods and standards are that they neither provide quantitative analysis of information security nor access potential loses information malfunctioning could create. This paper highlight the necessity of information security tool which could provide quantitative risk assessment along with the classification of risk management controls like management, operational and technical controls in an organizations. It is not possible for organizations to establish information security effectively without knowing the loopholes in their controls. Empirical data for this research was collected from the 5 major banks of Pakistan through two different questionnaires. It is observed that mostly banks have implemented the technical and operational control properly, but the real crux, the information security culture in organization is still a missing link in information security management.

Our website is actively being updated, and changes may occur frequently. Please clear your browser cache if needed. For feedback or error reporting, please email [email protected]

Request Access

Please fill out the form below to request access to this research paper. Your request will be reviewed by the editorial or author team.
X

Quote and Order Details

Contact Person

Invoice Address

Notes or Comments

This is the heading

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Ut elit tellus, luctus nec ullamcorper mattis, pulvinar dapibus leo.

High-quality academic research articles on global topics and journals.

Information Security Risk Assessment for Banking Sector-A Case study of Pakistani Banks

Dr. Usman Munir
Dr. Usman Munir
Irfan Manarvi
Irfan Manarvi

Research Journals