| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:Outsource or not? : An AHP based decision model for information security management
Authors:ID Jelovčan, Luka (Author)
ID Mihelič, Anže (Author)
ID Prislan Mihelič, Kaja (Author)
Files:.pdf Jelovcan-2022-Outsource_or_not__An_AHP_Based_D.pdf (1,97 MB)
MD5: D5A2AB031C1E483AA87543FFA297640F
 
URL https://doi.org/10.2478/orga-2022-0010
 
Language:English
Work type:Scientific work
Typology:1.01 - Original Scientific Article
Organization:FVV - Faculty of Criminal Justice and Security
Abstract:Purpose: Outsourcing information security has proven to be an efficient solution for information security management; however, it may not be the most suitable approach for every organization. This research aimed to develop a multi-criteria decision-making model that would enable organizations to determine which approach to information security management (outsourcing or internal management) is more suitable for their needs and capabilities. Methods: Our study utilized several different research methods. First, the decision criteria were identified by reviewing related work and then selected by information security experts in a focus group. Second, a survey was conducted among information security practitioners to assign the criteria weights. Third, four use cases were conducted with four real-world organizations to assess the usability, ease of use, and usefulness of the developed model. Results: We developed a ten-criteria model based on the analytic hierarchy process. The survey results promote performance-related criteria as more important than efficiency-focused criteria. Evidence from use cases proves that the decision model is useful and appropriate for various organizations. Conclusion: To make informed decisions on approaching information security management, organizations must first conduct a thorough analysis of their capabilities and needs and investigate potential external contractors. In such a case, the proposed model can serve as a useful support tool in the decision-making process to obtain clear recommendations tailored to factual circumstances.
Keywords:information security, decision model, analytic hierarchy process, AHP, management, outsourcing
Publication status:Published
Publication version:Version of Record
Submitted for review:03.11.2021
Article acceptance date:28.04.2022
Publication date:23.05.2022
Publisher:Moderna organizacija
Year of publishing:2022
Number of pages:Str. 142-159
Numbering:Letn. 55, Št. 2
PID:20.500.12556/DKUM-89184 New window
UDC:004.056:621.39
ISSN on article:1318-5454
COBISS.SI-ID:109986819 New window
DOI:10.2478/orga-2022-0010 New window
Publication date in DKUM:24.06.2024
Views:141
Downloads:24
Metadata:XML DC-XML DC-RDF
Categories:Misc.
:
JELOVČAN, Luka, MIHELIČ, Anže and PRISLAN MIHELIČ, Kaja, 2022, Outsource or not? : An AHP based decision model for information security management. Organizacija : revija za management, informatiko in kadre [online]. 2022. Vol. 55, no. Št. 2, p. 142–159. [Accessed 23 April 2025]. DOI 10.2478/orga-2022-0010. Retrieved from: https://dk.um.si/IzpisGradiva.php?lang=eng&id=89184
Copy citation
  
Average score:
0.5
1
1.5
2
2.5
3
3.5
4
4.5
5
(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share


Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Record is a part of a journal

Title:Organizacija : revija za management, informatiko in kadre
Shortened title:Organizacija
Publisher:Moderna organizacija
ISSN:1318-5454
COBISS.SI-ID:610909 New window

Licences

License:CC BY-NC-ND 4.0, Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International
Link:http://creativecommons.org/licenses/by-nc-nd/4.0/
Description:The most restrictive Creative Commons license. This only allows people to download and share the work for no commercial gain and for no other purposes.
Licensing start date:23.05.2022

Secondary language

Language:Slovenian
Keywords:informacijska varnost, odločitveni model, analitični hierarhični proces, AHP, management, zunanje izvajanje


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica