Security of Information Systems in Schools: An Evaluation using Audit and COBIT Interviews



Journal of Information System Security
Volume 6, Number 3 (2010)
Pages 4263
ISSN 1551-0123
Susan J. Lincke — University of Wisconsin-Parkside, USA
Reetika Kumar — University of Wisconsin-Parkside, USA
Virat Tiwari — University of Wisconsin-Parkside, USA
Information Institute Publishing, Washington DC, USA




This research helps to define the current level of information systems security in a set of Wisconsin/Illinois schools. To conduct this research  seven schools or school districts were interviewed, and students audited sections of the schools' computer infrastructure. These schools were of varying size in terms of their IT department structure and equipment facilities. Information was gathered on the basis of questions relevant to the security maturity standards defined by COBIT recommendations. This research helps to define whether and which COBIT recommendations apply to smaller nonprofit organizations, such as schools. By asking interviewees which areas were deemed important, we observed the priorities of the very small versus larger organizations. This research is necessary to mold the COBIT standard to a form useful for smaller institutions, and schools in particular.




COBIT, Education, Schools, Audit, Information Security Maturity Model, CMM, Small Business Security




