dc.contributorCedillo Orellana, Irene Priscila
dc.creatorArévalo Moscoso, Franklin Mauricio
dc.date.accessioned2017-12-04T16:45:47Z
dc.date.accessioned2022-10-20T21:46:40Z
dc.date.available2017-12-04T16:45:47Z
dc.date.available2022-10-20T21:46:40Z
dc.date.created2017-12-04T16:45:47Z
dc.date.issued2017
dc.identifierhttp://dspace.ucuenca.edu.ec/handle/123456789/28655
dc.identifier.urihttps://repositorioslatinoamericanos.uchile.cl/handle/2250/4605740
dc.description.abstractIn industrial food companies, there is critical information for this type of organizations, such as the data of their customers, suppliers, daily transactions and the main characteristics that define a product such as their recipes, manufacturing process, costs, etc. being necessary that all this information is reliably guarded against the possible risks that may materialize at any time. To protect information systems from increasing levels of cyber threats, organizations currently have the need to establish computer security programs or projects and, because information security policies are a necessary foundation of organizational security programs, there is a need for academic contributions in this area. For this reason, a research and review of topics related to information security, risk management and computer security policies is proposed in this work to later propose an adequate method consisting of 3 stages and a total of 9 steps for the development and diffusion of security policies based on the identification of the possible risks and vulnerabilities that an organization or an area of the organization presents, by selecting the most appropriate controls of the ISO / IEC 27002 standard, which is an internationally accepted guide of good practices that describe the control objectives and recommended controls regarding the security of information for an organization. The application of the proposed methodology is carried out as a case study in the production department of an industrial food production company in the city of Cuenca - Ecuador. This work can serve as a reference to other industrial food companies that need to elaborate in a technical and appropriate way their information security policies; however, it could also be used in companies of different types, making the corresponding validations and their application.
dc.languagespa
dc.relationTM4;1283
dc.subjectSeguridad De La Informacion
dc.subjectAnalisis De Riesgos
dc.subjectPoliticas De Seguridad
dc.subjectIso 27002
dc.subjectTesis De Maestria En Gestion Estrategica De Tecnologias De La Informacion
dc.titleElaboración y plan de implementación de políticas de seguridad de la información aplicadas a una empresa industrial de alimentos
dc.typemasterThesis


Este ítem pertenece a la siguiente institución