Information Security Risk Assessment for the Malaysian Aeronautical Information Management System

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Aviation-related information management system as well as other information systems suffer from the problem of security risk. This security risk is not an aviation-specific problem and this paper aims to study on the existing risks for the Malaysian Aeronautical Information Management System in the Civil Aviation Authority of Malaysia. The aims of this paper is to provide an overall risk level rating for the future implementation of information security risk management systems, while highlighting the advantages of ISO 27005 standards. The risk assessment activities will start with risk identification, followed by risk estimation. The third step is the risk evaluation which addresses the result analysis and several contributions of the study as efforts toward initiating ISO certification process.

Original languageEnglish
Title of host publicationProceedings of the 2018 Cyber Resilience Conference, CRC 2018
EditorsKhairul Akram Zainol Abidin, Masnizah Mohd, Zarina Shukur
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9781538675410
DOIs
Publication statusPublished - 25 Jan 2019
Event2018 Cyber Resilience Conference, CRC 2018 - Putrajaya, Malaysia
Duration: 13 Nov 201815 Nov 2018

Publication series

NameProceedings of the 2018 Cyber Resilience Conference, CRC 2018

Conference

Conference2018 Cyber Resilience Conference, CRC 2018
CountryMalaysia
CityPutrajaya
Period13/11/1815/11/18

Fingerprint

information management
Security of data
Risk assessment
Information management
risk assessment
air traffic
Aviation
Personnel rating
Civil aviation
Risk management
risk management
Malaysia
certification
information system
Information systems
rating
evaluation

Keywords

  • Aeronautical information management system
  • ISO 27005
  • Risk
  • Risk assessment

ASJC Scopus subject areas

  • Safety, Risk, Reliability and Quality
  • Social Sciences (miscellaneous)
  • Computer Networks and Communications

Cite this

Alwi, A., & Zainol Ariffin , K. A. (2019). Information Security Risk Assessment for the Malaysian Aeronautical Information Management System. In K. A. Z. Abidin, M. Mohd, & Z. Shukur (Eds.), Proceedings of the 2018 Cyber Resilience Conference, CRC 2018 [8626841] (Proceedings of the 2018 Cyber Resilience Conference, CRC 2018). Institute of Electrical and Electronics Engineers Inc.. https://doi.org/10.1109/CR.2018.8626841

Information Security Risk Assessment for the Malaysian Aeronautical Information Management System. / Alwi, Alfian; Zainol Ariffin , Khairul Akram.

Proceedings of the 2018 Cyber Resilience Conference, CRC 2018. ed. / Khairul Akram Zainol Abidin; Masnizah Mohd; Zarina Shukur. Institute of Electrical and Electronics Engineers Inc., 2019. 8626841 (Proceedings of the 2018 Cyber Resilience Conference, CRC 2018).

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Alwi, A & Zainol Ariffin , KA 2019, Information Security Risk Assessment for the Malaysian Aeronautical Information Management System. in KAZ Abidin, M Mohd & Z Shukur (eds), Proceedings of the 2018 Cyber Resilience Conference, CRC 2018., 8626841, Proceedings of the 2018 Cyber Resilience Conference, CRC 2018, Institute of Electrical and Electronics Engineers Inc., 2018 Cyber Resilience Conference, CRC 2018, Putrajaya, Malaysia, 13/11/18. https://doi.org/10.1109/CR.2018.8626841
Alwi A, Zainol Ariffin  KA. Information Security Risk Assessment for the Malaysian Aeronautical Information Management System. In Abidin KAZ, Mohd M, Shukur Z, editors, Proceedings of the 2018 Cyber Resilience Conference, CRC 2018. Institute of Electrical and Electronics Engineers Inc. 2019. 8626841. (Proceedings of the 2018 Cyber Resilience Conference, CRC 2018). https://doi.org/10.1109/CR.2018.8626841
Alwi, Alfian ; Zainol Ariffin , Khairul Akram. / Information Security Risk Assessment for the Malaysian Aeronautical Information Management System. Proceedings of the 2018 Cyber Resilience Conference, CRC 2018. editor / Khairul Akram Zainol Abidin ; Masnizah Mohd ; Zarina Shukur. Institute of Electrical and Electronics Engineers Inc., 2019. (Proceedings of the 2018 Cyber Resilience Conference, CRC 2018).
@inproceedings{f609c7fa30954134b4f6f1d526652046,
title = "Information Security Risk Assessment for the Malaysian Aeronautical Information Management System",
abstract = "Aviation-related information management system as well as other information systems suffer from the problem of security risk. This security risk is not an aviation-specific problem and this paper aims to study on the existing risks for the Malaysian Aeronautical Information Management System in the Civil Aviation Authority of Malaysia. The aims of this paper is to provide an overall risk level rating for the future implementation of information security risk management systems, while highlighting the advantages of ISO 27005 standards. The risk assessment activities will start with risk identification, followed by risk estimation. The third step is the risk evaluation which addresses the result analysis and several contributions of the study as efforts toward initiating ISO certification process.",
keywords = "Aeronautical information management system, ISO 27005, Risk, Risk assessment",
author = "Alfian Alwi and {Zainol Ariffin }, {Khairul Akram}",
year = "2019",
month = "1",
day = "25",
doi = "10.1109/CR.2018.8626841",
language = "English",
series = "Proceedings of the 2018 Cyber Resilience Conference, CRC 2018",
publisher = "Institute of Electrical and Electronics Engineers Inc.",
editor = "Abidin, {Khairul Akram Zainol} and Masnizah Mohd and Zarina Shukur",
booktitle = "Proceedings of the 2018 Cyber Resilience Conference, CRC 2018",

}

TY - GEN

T1 - Information Security Risk Assessment for the Malaysian Aeronautical Information Management System

AU - Alwi, Alfian

AU - Zainol Ariffin , Khairul Akram

PY - 2019/1/25

Y1 - 2019/1/25

N2 - Aviation-related information management system as well as other information systems suffer from the problem of security risk. This security risk is not an aviation-specific problem and this paper aims to study on the existing risks for the Malaysian Aeronautical Information Management System in the Civil Aviation Authority of Malaysia. The aims of this paper is to provide an overall risk level rating for the future implementation of information security risk management systems, while highlighting the advantages of ISO 27005 standards. The risk assessment activities will start with risk identification, followed by risk estimation. The third step is the risk evaluation which addresses the result analysis and several contributions of the study as efforts toward initiating ISO certification process.

AB - Aviation-related information management system as well as other information systems suffer from the problem of security risk. This security risk is not an aviation-specific problem and this paper aims to study on the existing risks for the Malaysian Aeronautical Information Management System in the Civil Aviation Authority of Malaysia. The aims of this paper is to provide an overall risk level rating for the future implementation of information security risk management systems, while highlighting the advantages of ISO 27005 standards. The risk assessment activities will start with risk identification, followed by risk estimation. The third step is the risk evaluation which addresses the result analysis and several contributions of the study as efforts toward initiating ISO certification process.

KW - Aeronautical information management system

KW - ISO 27005

KW - Risk

KW - Risk assessment

UR - http://www.scopus.com/inward/record.url?scp=85062734889&partnerID=8YFLogxK

UR - http://www.scopus.com/inward/citedby.url?scp=85062734889&partnerID=8YFLogxK

U2 - 10.1109/CR.2018.8626841

DO - 10.1109/CR.2018.8626841

M3 - Conference contribution

T3 - Proceedings of the 2018 Cyber Resilience Conference, CRC 2018

BT - Proceedings of the 2018 Cyber Resilience Conference, CRC 2018

A2 - Abidin, Khairul Akram Zainol

A2 - Mohd, Masnizah

A2 - Shukur, Zarina

PB - Institute of Electrical and Electronics Engineers Inc.

ER -