D1 : 呉麗思
■ Study on the information technology security policy implementation in an organization with the contrast of optimum network accessibility
Nowadays, users in the organization want to have an optimal network access to the existing network resource while maintaining the highest security. In some existing network of the organization, users found difficultly to access specific data or they were not authorized to perform certain task due to the network access limitation.
On the other hand, the policy and conditions of network usage also depend on the security policy implementation of an organization. The existing security policy could be too restrictive by withholds or delays appropriate access either by laying down tedious security standards, rules implementation or lengthy procedures paperwork.
This research investigates the drawbacks in the existing user network and IT security threats and proposed an optimum user network access IT model compliance with the international standard. The network security IT model conforms to the ISO/IEC 27001 and TR 13335-4 and TR 13335-5.