Document Type : Original Article
Authors
1
The Student of Ph.D, Information Technology Management, Islamic Azad University, Central Tehran Branch, Tehran, Iran. Email: f63akhavan@gmail.com
2
Assistant Professor, Industrial Management Dept, Information Technology Management, Islamic Azad University, Central Tehran Branch, Tehran, Iran. Responsible Author, Email: saa.mousavi@iau.ac.ir
3
Assistant Professor, Information Technology Management Dept, Tarbiat Modares University, Tehran, Iran. Email: a.sarabadani@modares.ac.ir
Abstract
Information technology is the most powerful technology of the present age that affects life and everything around us. Data and information stored in information technology systems are valuable and vital for the business of the organization, because the value of a business is focused on the value of its information and in addition to creating added value for the organization, the risk of losing capital and credibility Also follows. It threatens the trust of customers in various ways, and computer misuse and information security incidents are increasing, which has a direct impact on the processes and operations of companies and organizations. Information asset management is one of the main and strategic elements of business. Therefore, the increasing role of information security in the management of organizations and institutions is evident and the provision of the necessary infrastructure to achieve this is important. An approach based on the areas of focus of information security governance (including strategic alignment, risk management, resource management, performance measurement and value delivery) that helps to understand information security governance.
Keywords