Information Security Best Practices: First Steps for Startups and SMEs

This article identifies important first steps toward understanding and implementing information security. From the broad selection of existing best practices, we introduce a lightweight yet comprehensive security framework with four useful first steps: identifying assets and risks; protecting accoun...

Full description

Bibliographic Details
Main Authors: Urpo Kaila, Linus Nyman
Format: Article
Language:English
Published: Carleton University 2018-11-01
Series:Technology Innovation Management Review
Subjects:
Online Access:https://timreview.ca/article/1198
Description
Summary:This article identifies important first steps toward understanding and implementing information security. From the broad selection of existing best practices, we introduce a lightweight yet comprehensive security framework with four useful first steps: identifying assets and risks; protecting accounts, systems, clouds, and data; implementing a continuity plan; and monitoring and reviewing. This article is intended primarily for startups and less mature companies, but it is likely to be of interest to any reader seeking an introduction to basic information security concepts and principles as well as their implementation.
ISSN:1927-0321