Managing Digital Firms: Information Security: Unit 4
Managing Digital Firms: Information Security: Unit 4
Information Security
Unit 4
Managing Digital Firms
• Management Issues -
• Information Security and Control,
• Quality Assurance,
• Ethical and Social Dimensions,
• IPR related to IT Services / IT Products
Information security controls
• Information security controls are measures
taken to reduce information security risks
such as information systems breaches,
data theft, and unauthorized changes to
digital information or systems. These
security controls are intended to help
protect the availability, confidentiality, and
integrity of data and networks, and are
typically implemented after an information
security risk assessment.
Security of an Information System
• Information system security refers to the way the system is
defended against unauthorized access, use, disclosure, disruption,
modification, perusal, inspection, recording or destruction.
• Maintaining and assuring the accuracy and consistency of data over its entire life-cycle.
• Ensuring that the computing systems, the security controls used to protect it and the
communication channels used to access it, functioning correctly all the time, thus making
information available in all situations.
• Ensuring the integrity of a transaction by validating that both parties involved are genuine, by
incorporating authentication features such as "digital signatures".
• Ensuring that once a transaction takes place, none of the parties can deny it, either having
received a transaction, or having sent a transaction. This is called 'non-repudiation'.
• What is Quality?
• Quality is extremely hard to define, and it is simply
stated: "Fit for use or purpose." It is all about meeting the
needs and expectations of customers with respect to
functionality, design, reliability, durability, & price of the
product.
• What is Assurance?
• Assurance is nothing but a positive declaration on a
product or service, which gives confidence. It is certainty
of a product or a service, which it will work well. It
provides a guarantee that the product will work without
any problems as per the expectations or requirements.
Quality Assurance in Software Testing
• Quality Assurance
methodology has a
defined cycle called
PDCA cycle or Deming
cycle. The phases of this
cycle are:
• Plan
• Do
• Check
• Act
• https://www.guru99.com/all-about-
quality-assurance.html
Difference between Quality Control and Quality Assurance?
Role of Software Quality
Assurance
• Quality assurance managers play a crucial
role in business by ensuring that products
meet certain thresholds of acceptability.
They plan, direct or coordinate quality
assurance programs and formulate quality
control policies. They also work to improve
an organization's efficiency and profitability
by reducing waste.
Quality Assurance Tools (Software Quality
Assurance Tool)
• Cause-and-effect diagram
• Check sheet.
• Control chart.
• Histogram.
• Pareto chart.
• Scatter diagram.
• Stratification (alternately, flow chart or run
chart)
Quality Assurance Management
System
• A quality management system (QMS) is a formalized system that
documents processes, procedures, and responsibilities for achieving quality
policies and objectives. A QMS helps coordinate and direct an organization’s
activities to meet customer and regulatory requirements and improve its
effectiveness and efficiency on a continuous basis.
– Improving processes
– Reducing waste
– Lowering costs
– Facilitating and identifying training opportunities
– Engaging staff
– Setting organization-wide direction
QMS
• Quality Assurance System is any systematic
process of determining whether a product or
service meets specified requirements.