Font Size: a A A

Study On Information Security Risk Management System Of Commercial Bank On A City

Posted on:2010-04-03Degree:MasterType:Thesis
Country:ChinaCandidate:J W KuangFull Text:PDF
GTID:2178360275496120Subject:Business Administration
Abstract/Summary:PDF Full Text Request
Finance plays the core role in the modern economic system. Furthermore, Commercial bank is the most important component in our nation's financial industry. Since 90s, especially after the 21st century, IT has played an important role in our nation's commercial banks, and both of them get involved deeply between each other. However, the complexity and openness of information system is becoming the key issue which has to be considered in the field of information security risk management. After China becomes the member of WTO, banks are becoming more and more international. Foreign banks facilitated with advanced technology and management has challenged local banks which are imperfect in corporate governance, IT governance, and even the framework of information security risk management. For local banks, they have faced serious risk in information risk. Therefore, it is necessary and important for researching the infrastructure of information security risk management of commercial bank.Information security risk management system is relatively universal become our nation's bank has high homogeneous. The paper has analyzed the current status, deficiency and the consequence of one commercial bank's information security risk management system Base on some theories, standards and guidance, the paper has pointed out the key issues of completing the information security risk management of commercial bank, and furthermore pointed out the structure and management model of IT governance decision, execution and supervision. The paper has given the definition of the frame of information security risk management. On the base of current commercial bank's information security risk management infrastructure, the paper has figured out the strategy and the method of execution of information security risk management. For the purpose of commercial bank's internal control, the paper has pointed out the control and improved method for those key points. After the conclusion of the final purpose of information security risk management is continuity and the methods of discerning leak of information security risk management, the paper has given the suggestions of feedback and amendment.In the end, the paper has summarized the deficiencies of the current research, and proposed some trial ideas for solving those deficiencies and difficulties in the coming researches.
Keywords/Search Tags:Commercial bank, IT governance, Information security risk management system
PDF Full Text Request
Related items