000 01560nam a22002177a 4500
003 KE-MeUCS
005 20220908154915.0
008 220908b xxu||||| |||| 00| 0 eng d
020 _a
022 _2
040 _cKE-MeUCS
_dKE-MeUCS
050 _a
100 _aGibendi, Ruth
_91
245 _aImplementation of the ISO 27001:2013 standard in an academic library: case of Meru University of Science and Technology/
_cRuth Gibendi, Elijah Walubuka and
260 _aMeru:
_bMeru University of Science and Technology,
_c2022.
490 _aMUSTIC2022
520 _aAcademic libraries are often considered the ‘heart’ of academic institutions. They are charged with provision of a range of resources, services, tools and software that are increasingly made available online. With information as the key resource under its responsibility, information security is a pertinent component to assure its confidentiality, integrity and availability. This paper describes the process of implementing the ISO 27001:2013 Information Security Standard for the library system of Meru University of Science and Technology. Theoretical models in information security in the library are examined. Next, details of the approach undertaken in meeting the requirements of the standard are discussed. The benefits gained and challenges that were faced are presented The lessons gained herein will assist similar institutions seeking to get certified using this standard.
700 _aWalubuka, Elijah
700 _aDiki, Paul Mutethia
942 _2lcc
_cART
_tMMS
999 _c88061
_d88060