01409nas a2200217 4500000000100000000000100001008004100002653002500043653002900068653001600097653002500113653002300138100002000161700002100181700002100202700002600223245012900249300001200378490000700390520079400397 2019 d10aInformation Security10ainformation technologies10aIT security10aknowledge management10asecurity standards1 aSergiy Dotsenko1 aOleg Illiashenko1 aSergii Kamenskyi1 aVyacheslav Kharchenko00aIntegrated Model of Knowledge Management for Security of Information Technologies: Standards ISO/IEC 15408 and ISO/IEC 18045 a305-3170 v433 a

The paper presents analysis of existing knowledge management models and justification for introducing an integrated model of knowledge management for both industry and academia. It is proposed to build such a model using well-known standards of IT security – common criteria and methodology for IT security evaluation. The model of knowledge management is elaborated by analysing the content of the relevant elements of standards and establishing the knowledge content that determines the forms of relations between them. The authors propose the application of an architecture of four-factor models towards the formation of knowledge management models in the organization of the information security management system in accordance with the standards of the series ISO/ IEC 27000.