U.S. flag

An official website of the United States government, Department of Justice.

NCJRS Virtual Library

The Virtual Library houses over 235,000 criminal justice resources, including all known OJP works.
Click here to search the NCJRS Virtual Library

Training - The Missing Link in Computer System Security

NCJ Number
73739
Journal
Security World Volume: 17 Issue: 9 Dated: (September 1980) Pages: 28-30
Author(s)
J Lobel
Date Published
1980
Length
3 pages
Annotation
If administrative executives lack an adequate background in information systems technology, the risks and security requirements of data processing system are increased.
Abstract
Two serious consequences may result: first, lack of information about their system's security weaknesses can result in poor decisionmaking during the planning and design phases of a systems development project; second, inadequate knowledge may affect the support that data processing management receives. Security education should be directed toward executives, middle management, data processing personnel, system users, and the security professional. A complete security and privacy education and training program should encompass at least 11 security-related subjects. These should include computer security and privacy planning methodologies, system risks analysis techniques, and operations, internal and physical security. In addition, computer auditing, systems monitoring and surveillance, and disaster recovery planning should be taught. Privacy guidelines and control, data communications, and computer crime investigation procedures should also be included. Company planning might also encompass position refinements and research concerning available information. A chart and list of training sources is included.

Downloads

No download available

Availability