{"id":"https://openalex.org/W2808102949","doi":"https://doi.org/10.1007/978-3-319-93931-5_8","title":"Information Security Management Systems - A Maturity Model Based on ISO/IEC 27001","display_name":"Information Security Management Systems - A Maturity Model Based on ISO/IEC 27001","publication_year":2018,"publication_date":"2018-01-01","ids":{"openalex":"https://openalex.org/W2808102949","doi":"https://doi.org/10.1007/978-3-319-93931-5_8","mag":"2808102949"},"language":"en","primary_location":{"id":"doi:10.1007/978-3-319-93931-5_8","is_oa":false,"landing_page_url":"https://doi.org/10.1007/978-3-319-93931-5_8","pdf_url":null,"source":{"id":"https://openalex.org/S4210177767","display_name":"Lecture notes in business information processing","issn_l":"1865-1348","issn":["1865-1348","1865-1356"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Business Information Processing","raw_type":"book-chapter"},"type":"book-chapter","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5058214652","display_name":"Diogo Proen\u00e7a","orcid":"https://orcid.org/0000-0002-3671-9637"},"institutions":[{"id":"https://openalex.org/I141596103","display_name":"University of Lisbon","ror":"https://ror.org/01c27hj86","country_code":"PT","type":"education","lineage":["https://openalex.org/I141596103"]},{"id":"https://openalex.org/I121345201","display_name":"Instituto de Engenharia de Sistemas e Computadores Investiga\u00e7\u00e3o e Desenvolvimento","ror":"https://ror.org/04mqy3p58","country_code":"PT","type":"nonprofit","lineage":["https://openalex.org/I121345201","https://openalex.org/I4210125590"]},{"id":"https://openalex.org/I4210125590","display_name":"Institute for Systems Engineering and Computers","ror":"https://ror.org/033wn8m60","country_code":"PT","type":"nonprofit","lineage":["https://openalex.org/I4210125590"]},{"id":"https://openalex.org/I203847022","display_name":"Instituto Polit\u00e9cnico de Lisboa","ror":"https://ror.org/04ea70f07","country_code":"PT","type":"education","lineage":["https://openalex.org/I203847022"]}],"countries":["PT"],"is_corresponding":true,"raw_author_name":"Diogo Proen\u00e7a","raw_affiliation_strings":["INESC-ID - Instituto de Engenharia de Sistemas e Computadores Investiga\u00e7\u00e3o e Desenvolvimento, Lisbon, Portugal","Instituto Superior T\u00e9cnico, Universidade de Lisboa, Lisbon, Portugal"],"affiliations":[{"raw_affiliation_string":"INESC-ID - Instituto de Engenharia de Sistemas e Computadores Investiga\u00e7\u00e3o e Desenvolvimento, Lisbon, Portugal","institution_ids":["https://openalex.org/I4210125590","https://openalex.org/I121345201"]},{"raw_affiliation_string":"Instituto Superior T\u00e9cnico, Universidade de Lisboa, Lisbon, Portugal","institution_ids":["https://openalex.org/I203847022","https://openalex.org/I141596103"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5040049937","display_name":"Jos\u00e9 Borbinha","orcid":"https://orcid.org/0000-0001-5463-8438"},"institutions":[{"id":"https://openalex.org/I203847022","display_name":"Instituto Polit\u00e9cnico de Lisboa","ror":"https://ror.org/04ea70f07","country_code":"PT","type":"education","lineage":["https://openalex.org/I203847022"]},{"id":"https://openalex.org/I141596103","display_name":"University of Lisbon","ror":"https://ror.org/01c27hj86","country_code":"PT","type":"education","lineage":["https://openalex.org/I141596103"]},{"id":"https://openalex.org/I121345201","display_name":"Instituto de Engenharia de Sistemas e Computadores Investiga\u00e7\u00e3o e Desenvolvimento","ror":"https://ror.org/04mqy3p58","country_code":"PT","type":"nonprofit","lineage":["https://openalex.org/I121345201","https://openalex.org/I4210125590"]},{"id":"https://openalex.org/I4210125590","display_name":"Institute for Systems Engineering and Computers","ror":"https://ror.org/033wn8m60","country_code":"PT","type":"nonprofit","lineage":["https://openalex.org/I4210125590"]}],"countries":["PT"],"is_corresponding":false,"raw_author_name":"Jos\u00e9 Borbinha","raw_affiliation_strings":["INESC-ID - Instituto de Engenharia de Sistemas e Computadores Investiga\u00e7\u00e3o e Desenvolvimento, Lisbon, Portugal","Instituto Superior T\u00e9cnico, Universidade de Lisboa, Lisbon, Portugal"],"affiliations":[{"raw_affiliation_string":"INESC-ID - Instituto de Engenharia de Sistemas e Computadores Investiga\u00e7\u00e3o e Desenvolvimento, Lisbon, Portugal","institution_ids":["https://openalex.org/I4210125590","https://openalex.org/I121345201"]},{"raw_affiliation_string":"Instituto Superior T\u00e9cnico, Universidade de Lisboa, Lisbon, Portugal","institution_ids":["https://openalex.org/I203847022","https://openalex.org/I141596103"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5058214652"],"corresponding_institution_ids":["https://openalex.org/I121345201","https://openalex.org/I141596103","https://openalex.org/I203847022","https://openalex.org/I4210125590"],"apc_list":null,"apc_paid":null,"fwci":5.2077,"has_fulltext":false,"cited_by_count":40,"citation_normalized_percentile":{"value":0.95880831,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"102","last_page":"114"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11572","display_name":"Information Technology Governance and Strategy","score":0.9959999918937683,"subfield":{"id":"https://openalex.org/subfields/1404","display_name":"Management Information Systems"},"field":{"id":"https://openalex.org/fields/14","display_name":"Business, Management and Accounting"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11024","display_name":"Information Systems Theories and Implementation","score":0.9919000267982483,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/capability-maturity-model","display_name":"Capability Maturity Model","score":0.6179134845733643},{"id":"https://openalex.org/keywords/maturity","display_name":"Maturity (psychological)","score":0.6106568574905396},{"id":"https://openalex.org/keywords/itil-security-management","display_name":"ITIL security management","score":0.5328966379165649},{"id":"https://openalex.org/keywords/information-security-management-system","display_name":"Information security management system","score":0.5322803258895874},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.5069249272346497},{"id":"https://openalex.org/keywords/information-systems-security","display_name":"Information systems security","score":0.4632602334022522},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.441322386264801},{"id":"https://openalex.org/keywords/process-management","display_name":"Process management","score":0.3901088833808899},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.341200590133667},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.30793675780296326},{"id":"https://openalex.org/keywords/management-information-systems","display_name":"Management information systems","score":0.2755870223045349},{"id":"https://openalex.org/keywords/information-system","display_name":"Information system","score":0.2690166234970093},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.24649885296821594},{"id":"https://openalex.org/keywords/security-information-and-event-management","display_name":"Security information and event management","score":0.12212103605270386},{"id":"https://openalex.org/keywords/cloud-computing-security","display_name":"Cloud computing security","score":0.10100790858268738},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.09508025646209717},{"id":"https://openalex.org/keywords/security-service","display_name":"Security service","score":0.0854898989200592},{"id":"https://openalex.org/keywords/political-science","display_name":"Political science","score":0.07456877827644348},{"id":"https://openalex.org/keywords/electrical-engineering","display_name":"Electrical engineering","score":0.04715067148208618}],"concepts":[{"id":"https://openalex.org/C85890633","wikidata":"https://www.wikidata.org/wiki/Q929673","display_name":"Capability Maturity Model","level":3,"score":0.6179134845733643},{"id":"https://openalex.org/C101433766","wikidata":"https://www.wikidata.org/wiki/Q3543263","display_name":"Maturity (psychological)","level":2,"score":0.6106568574905396},{"id":"https://openalex.org/C114351632","wikidata":"https://www.wikidata.org/wiki/Q5974820","display_name":"ITIL security management","level":5,"score":0.5328966379165649},{"id":"https://openalex.org/C111153917","wikidata":"https://www.wikidata.org/wiki/Q1662500","display_name":"Information security management system","level":5,"score":0.5322803258895874},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.5069249272346497},{"id":"https://openalex.org/C2988319471","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information systems security","level":4,"score":0.4632602334022522},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.441322386264801},{"id":"https://openalex.org/C195094911","wikidata":"https://www.wikidata.org/wiki/Q14167904","display_name":"Process management","level":1,"score":0.3901088833808899},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.341200590133667},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.30793675780296326},{"id":"https://openalex.org/C29848774","wikidata":"https://www.wikidata.org/wiki/Q61905","display_name":"Management information systems","level":3,"score":0.2755870223045349},{"id":"https://openalex.org/C180198813","wikidata":"https://www.wikidata.org/wiki/Q121182","display_name":"Information system","level":2,"score":0.2690166234970093},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.24649885296821594},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.12212103605270386},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.10100790858268738},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.09508025646209717},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.0854898989200592},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.07456877827644348},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.04715067148208618},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.0},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C117110713","wikidata":"https://www.wikidata.org/wiki/Q3394676","display_name":"Network security policy","level":4,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1007/978-3-319-93931-5_8","is_oa":false,"landing_page_url":"https://doi.org/10.1007/978-3-319-93931-5_8","pdf_url":null,"source":{"id":"https://openalex.org/S4210177767","display_name":"Lecture notes in business information processing","issn_l":"1865-1348","issn":["1865-1348","1865-1356"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Business Information Processing","raw_type":"book-chapter"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/17","score":0.4099999964237213,"display_name":"Partnerships for the goals"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320334779","display_name":"Funda\u00e7\u00e3o para a Ci\u00eancia e a Tecnologia","ror":"https://ror.org/00snfqn58"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":13,"referenced_works":["https://openalex.org/W109081069","https://openalex.org/W137689262","https://openalex.org/W176325138","https://openalex.org/W183832848","https://openalex.org/W657731981","https://openalex.org/W1592211879","https://openalex.org/W2053957399","https://openalex.org/W2076622132","https://openalex.org/W2136451344","https://openalex.org/W2138980717","https://openalex.org/W2150546866","https://openalex.org/W2498503053","https://openalex.org/W3151685851"],"related_works":["https://openalex.org/W1999742903","https://openalex.org/W2230654898","https://openalex.org/W203815982","https://openalex.org/W2546952811","https://openalex.org/W1495551475","https://openalex.org/W4205358031","https://openalex.org/W3089669902","https://openalex.org/W40842196","https://openalex.org/W3045803430","https://openalex.org/W2000891179"],"abstract_inverted_index":null,"counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":16},{"year":2022,"cited_by_count":5},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":6},{"year":2019,"cited_by_count":1},{"year":2014,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
