Document Type: Research Paper
Master of Information Technology Management, Islamic Azad University,E-campus, Tehran, Iran
Department of industrial management, college of management and accounting, Yadegare-e- Imam Khomeini (RAH) branch, Islamic Azad University, Tehran, Iran
Nowadays, by the expansion of Information Technology in human life and dependence of business upon it, data protection, as one the most valuable and critical assets of the organization, has become the vital tool of modern industry and prerequisite for sustaining business process. In order to face the challenges and to take advantage of new opportunities brought forth by IT advances we suggest organizations shift the focus from a technology-based information security to a managerial-based approach. Also, as the organizations get familiar with the importance and priority of key managerial factors affecting information security, they will be able to increase the efficiency of organization considering limited resources and the importance of each criterion. In this study, it has been tried to identify managerial factors affecting information security in Tehran University of Medical Sciences. Also, it was intended to address more important factors in order to increase efficiency. For group decision-making, Delphi method, and for modeling linguistic valuables and uncertainty in the theories, fuzzy theory was used in order to extract major managerial indices affecting information security in the organization. Then, by using VIKOR technique as one of the multi-criterion decision-making methods, the indices obtained by Fuzzy Delphi method were prioritized.