IDEAS home Printed from https://ideas.repec.org/a/eee/ijocip/v2y2009i1p26-37.html
   My bibliography  Save this article

A framework for incident response management in the petroleum industry

Author

Listed:
  • Jaatun, Martin Gilje
  • Albrechtsen, Eirik
  • Line, Maria B.
  • Tøndel, Inger Anne
  • Longva, Odd Helge

Abstract

Incident response is the process of responding to and handling security-related incidents involving information and communications technology (ICT) infrastructure and data. Incident response has traditionally been reactive in nature, focusing mainly on technical issues. This paper presents the Incident Response Management (IRMA) method, which combines traditional incident response with proactive learning and socio-technical perspectives. The IRMA method is targeted at integrated operations within the petroleum industry, but it is also applicable to other industries that rely on process control systems.

Suggested Citation

  • Jaatun, Martin Gilje & Albrechtsen, Eirik & Line, Maria B. & Tøndel, Inger Anne & Longva, Odd Helge, 2009. "A framework for incident response management in the petroleum industry," International Journal of Critical Infrastructure Protection, Elsevier, vol. 2(1), pages 26-37.
  • Handle: RePEc:eee:ijocip:v:2:y:2009:i:1:p:26-37
    DOI: 10.1016/j.ijcip.2009.02.004
    as

    Download full text from publisher

    File URL: http://www.sciencedirect.com/science/article/pii/S1874548209000043
    Download Restriction: Full text for ScienceDirect subscribers only

    File URL: https://libkey.io/10.1016/j.ijcip.2009.02.004?utm_source=ideas
    LibKey link: if access is restricted and if your library uses this service, LibKey will redirect you to where you can use your library subscription to access this item
    ---><---

    As the access to this document is restricted, you may want to search for a different version of it.

    References listed on IDEAS

    as
    1. Andreas Klinke & Ortwin Renn, 2002. "A New Approach to Risk Evaluation and Management: Risk‐Based, Precaution‐Based, and Discourse‐Based Strategies," Risk Analysis, John Wiley & Sons, vol. 22(6), pages 1071-1094, December.
    2. Finn Olav Sveen & Eliot Rich & Matthew Jager, 2007. "Overcoming organizational challenges to secure knowledge management," Information Systems Frontiers, Springer, vol. 9(5), pages 481-492, November.
    3. Hammer, Michael & Champy, James, 1993. "Reengineering the corporation: A manifesto for business revolution," Business Horizons, Elsevier, vol. 36(5), pages 90-91.
    Full references (including those not matched with items on IDEAS)

    Citations

    Citations are extracted by the CitEc Project, subscribe to its RSS feed for this item.
    as


    Cited by:

    1. Singh, Abhishek Narain & Gupta, M.P. & Ojha, Amitabh, 2014. "Identifying critical infrastructure sectors and their dependencies: An Indian scenario," International Journal of Critical Infrastructure Protection, Elsevier, vol. 7(2), pages 71-85.
    2. Staves, Alexander & Anderson, Tom & Balderstone, Harry & Green, Benjamin & Gouglidis, Antonios & Hutchison, David, 2022. "A Cyber Incident Response and Recovery Framework to Support Operators of Industrial Control Systems," International Journal of Critical Infrastructure Protection, Elsevier, vol. 37(C).
    3. Rao Faizan Ali & P.D.D. Dominic & Kashif Ali, 2020. "Organizational Governance, Social Bonds and Information Security Policy Compliance: A Perspective towards Oil and Gas Employees," Sustainability, MDPI, vol. 12(20), pages 1-27, October.
    4. Atif Ahmad & Kevin C. Desouza & Sean B. Maynard & Humza Naseer & Richard L. Baskerville, 2020. "How integration of cyber security management and incident response enables organizational learning," Journal of the Association for Information Science & Technology, Association for Information Science & Technology, vol. 71(8), pages 939-953, August.
    5. Bartnes Line, Maria & Anne Tøndel, Inger & Jaatun, Martin G., 2016. "Current practices and challenges in industrial control organizations regarding information security incident management – Does size matter? Information security incident management in large and small ," International Journal of Critical Infrastructure Protection, Elsevier, vol. 12(C), pages 12-26.

    Most related items

    These are the items that most often cite the same works as this one and are cited by the same works as this one.
    1. Toppen, R. & Smits, M.T. & Ribbers, P.M.A., 1998. "Improving process performance through market network design : A study of the impact of electronic markets in the financial securities sector," Other publications TiSEM c3c8d2ea-7727-475e-83cf-d, Tilburg University, School of Economics and Management.
    2. V.K. Gupta, 2016. "Strategic framework for managing forces of continuity and change in innovation and risk management in service sector: a study of service industry in India," International Journal of Services and Operations Management, Inderscience Enterprises Ltd, vol. 23(1), pages 1-17.
    3. Harry Hummels & Patrick Nullens, 2022. "‘Other-wise’ Organizing. A Levinasian Approach to Agape in Work and Business Organisations," Humanistic Management Journal, Springer, vol. 7(2), pages 211-232, October.
    4. Tina George Karippacheril & Soonhee Kim & Robert P. Jr. Beschel & Changyong Choi, 2016. "Bringing Government into the 21st Century," World Bank Publications - Books, The World Bank Group, number 24579, December.
    5. Stephan Kudyba, 2006. "Enhancing Organisational Information Flow And Knowledge Creation In Re-Engineering Supply Chain Systems: An Analysis Of The U.S. Automotive Parts And Supplies Model," International Journal of Innovation Management (ijim), World Scientific Publishing Co. Pte. Ltd., vol. 10(02), pages 163-173.
    6. Nurmi, Raimo, 1998. "Knowledge-intensive firms," Business Horizons, Elsevier, vol. 41(3), pages 26-32.
    7. Daniele Binci, 2013. "L?equilibrio organizzativo attraverso il clima. L?evidenza empirica di un ente locale," ECONOMIA E DIRITTO DEL TERZIARIO, FrancoAngeli Editore, vol. 2013(1), pages 65-97.
    8. Vansina, L.S. & Taillieu, T.C.B., 1994. "Business process reengineering or socio-technical system design in new clothes?," WORC Paper 94.09.064/3, Tilburg University, Work and Organization Research Centre.
    9. Awolusi & Olawumi Dele & Akeke & Niyi Isreal & Akinruwa & Temitope Emmanuel, 2014. "Modeling Business Process Re-Engineering and Organizational Performance in the Nigerian Oil and Gas Industry," International Journal of Management Sciences, Research Academy of Social Sciences, vol. 3(5), pages 336-350.
    10. Fındık, Derya & Beyhan, Berna, 2014. "A Perceptual Measure of Innovation Performance: Micro Level Evidence from Turkey," MPRA Paper 60961, University Library of Munich, Germany.
    11. Jacques Simonin & Selmin Nurcan & Judith Barrios, 2013. "Evolution organisationnelle fondée sur la cohérence des relations entre acteurs avec les buts métiers," Post-Print hal-00831621, HAL.
    12. Charalambos Vlados & Fotios Katimertzopoulos, 2019. "The ¡°Mystery¡± of Innovation: Bridging the Economic and Business Thinking and the Stra.Tech.Man Approach," Business and Economic Research, Macrothink Institute, vol. 9(1), pages 236-262, March.
    13. Lixiang Jiang & Ronald Giachetti, 2008. "A queueing network model to analyze the impact of parallelization of care on patient cycle time," Health Care Management Science, Springer, vol. 11(3), pages 248-261, September.
    14. Agnieszka Bielinska-Kwapisz, 2014. "Do football teams learn from changing coaches? A test of the deceleration hypothesis," Cogent Economics & Finance, Taylor & Francis Journals, vol. 2(1), pages 1-9, December.
    15. Lehrer, Mark & Banerjee, Preeta M. & Wang, I. Kim, 2017. "When the sky is the limit on scale: From temporal to multiplicative scaling in process-based technologies," Technological Forecasting and Social Change, Elsevier, vol. 117(C), pages 151-159.
    16. Patrick Afflerbach & Martin Hohendorf & Jonas Manderscheid, 0. "Design it like Darwin - A value-based application of evolutionary algorithms for proper and unambiguous business process redesign," Information Systems Frontiers, Springer, vol. 0, pages 1-21.
    17. Roan, Jinshyang & Gong, Linguo & Tang, Kwei, 1997. "Process mean determination under constant raw material supply," European Journal of Operational Research, Elsevier, vol. 99(2), pages 353-365, June.
    18. Lida Xu & WenAn Tan & Hongyuan Zhen & Weiming Shen, 2008. "An approach to enterprise process dynamic modeling supporting enterprise process evolution," Information Systems Frontiers, Springer, vol. 10(5), pages 611-624, November.
    19. Harish Kumar & S.V.S. Chauhan, 1998. "Re-engineering Public Sector Enterprises," Vision, , vol. 2(2), pages 44-50, July.
    20. Eleni ARAVOPOULOU, 2015. "Zmiana Organizacyjna – Przegląd Teorii I Koncepcji," Nowoczesne Systemy Zarządzania. Modern Management Systems, Military University of Technology, Faculty of Security, Logistics and Management, Institute of Organization and Management, issue 1, pages 19-32.

    Corrections

    All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:eee:ijocip:v:2:y:2009:i:1:p:26-37. See general information about how to correct material in RePEc.

    If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

    If CitEc recognized a bibliographic reference but did not link an item in RePEc to it, you can help with this form .

    If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

    For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: Catherine Liu (email available below). General contact details of provider: https://www.journals.elsevier.com/international-journal-of-critical-infrastructure-protection .

    Please note that corrections may take a couple of weeks to filter through the various RePEc services.

    IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.