Date of Award

Spring 4-1-2005

Document Type


Degree Name

Master of Science in Information Systems (MSIS)

First Advisor

William Figg

Second Advisor

Mark Moran


The researcher identified information security issues in the financial services sector, and discussed the importance of a comprehensive information security risk assessment framework for large financial institutions. Many information security risk assessment models in use today were examined for their content and process quality, and the researcher determine that none of the existing information security risk assessment models include sufficient process and content for large financial institutions to use as the basis for their risk assessments. The researcher recommended that large financial institutions consider a new model for information security risk assessment that combines either the National Security Agency's Information Assessment Methodology or National Institute for Standards and Technology's Assessment Methodology with BS7799, the international information security standard. This hybrid model is examined to understand fit with large financial institutions.


