Name: | Description: | Size: | Format: | |
---|---|---|---|---|
1 MB | Adobe PDF |
Authors
Advisor(s)
Abstract(s)
A presente dissertação de Mestrado centra-se na adoção de Políticas de Segurança dos Sistemas
de Informação nas universidades moçambicanas. Trata-se de um estudo de caso, realizado com
recurso ao inquérito por questionário a 12 universidades moçambicanas, foram inquiridas 69
faculdades/escolas superiores que fazem parte da estrutura destas universidades.
O principal objetivo do inquérito foi a obtenção de resposta à seguinte questão: As
Universidades (faculdades/escolas superiores) tem posse de uma política de segurança da
informação? Com base no levantamento efetuado concluiu-se que das 69 Faculdades/escolas
superiores, 43 (62%) indicaram dispor de políticas de SSI e 26 (38%) indicaram não ter mas
tem intenção de adotar uma política.
As características e componentes das políticas de segurança dos sistemas de informação
existentes nas universidades moçambicanas foram obtidos em 43 inqueridos que afirmaram
dispor de uma política, constatou-se que todos tem definidos papeis e responsabilidades dos
utilizadores, 21 afirmaram estarem definidas sansões para o não cumprimento da política de
segurança dos sistemas de informação, 18 assinaram o termo de aceitação da política de
segurança dos sistemas de informação, a política foi superiormente aprovada pelos diretores
das faculdades/escolas superiores, 21 afirmaram ter feito a revisão da política uma vez.
Por outro lado, os 26 inquiridos que afirmaram não dispor de uma política constatou-se que a
falta de pessoal para a elaboração das políticas, a falta de pessoas que influenciam melhor a
direção na importância de uma política de segurança dos sistemas de informação, a falta de uma
legislação de crimes informáticos em Moçambique e a centralização dos serviços informáticos
pela reitoria são alguns dos fatores que condicionam a adoção das políticas de SSI.
This Master's dissertation is focused on the adoption of information systems security policy in Mozambican universities. This is a case study, carried out using a questionnaire survey of 12 Mozambican universities, in which 69 colleges that were part of the structure of these universities. Whose objective was to answer the main question related to the possession of a security policy based on the research carried out, it was found out that 43 (62%) have an information systems security policy and 26 (38%) do not have an information systems security policy. The characteristics and components of the security policies of the information systems in Mozambican universities were obtained in 43 respondents who stated that they have a policy, it was found that all have defined roles and responsibilities of users, 21 stated that there are defined sanctions on the non-compliance of information systems security policy, 18 signed the term of acceptance of the information systems security policy, the policy was superiorly approved by the directors (Principles) of the colleges / high vocational schools, regarding the compliance of the policy all of them were unanimous on stating that it is the IT department responsibility, 21 stated they have done the policy review once. On the other hand, the 26 respondents they did not have a policy, it was found that the lack of staff capable of policy making; the lack of people who better influence the direction (staff department/borders) of the importance of an information systems security policy; the lack of legislation on cyber-crimes in Mozambique and the centralization of computer services by the Rector's Office are some of the factors that condition the adoption of ISSP.
This Master's dissertation is focused on the adoption of information systems security policy in Mozambican universities. This is a case study, carried out using a questionnaire survey of 12 Mozambican universities, in which 69 colleges that were part of the structure of these universities. Whose objective was to answer the main question related to the possession of a security policy based on the research carried out, it was found out that 43 (62%) have an information systems security policy and 26 (38%) do not have an information systems security policy. The characteristics and components of the security policies of the information systems in Mozambican universities were obtained in 43 respondents who stated that they have a policy, it was found that all have defined roles and responsibilities of users, 21 stated that there are defined sanctions on the non-compliance of information systems security policy, 18 signed the term of acceptance of the information systems security policy, the policy was superiorly approved by the directors (Principles) of the colleges / high vocational schools, regarding the compliance of the policy all of them were unanimous on stating that it is the IT department responsibility, 21 stated they have done the policy review once. On the other hand, the 26 respondents they did not have a policy, it was found that the lack of staff capable of policy making; the lack of people who better influence the direction (staff department/borders) of the importance of an information systems security policy; the lack of legislation on cyber-crimes in Mozambique and the centralization of computer services by the Rector's Office are some of the factors that condition the adoption of ISSP.
Description
Keywords
Políticas de Segurança de Sistemas de Informação Adoção de Políticas de Segurança de Sistemas de Informação Segurança de Sistemas de Informação Universidades Moçambicanas