Abstract: The research aims to assess the level of readiness of the Information and Communication Technology (ICT) infrastructure for business continuity at Earthlink Telecommunications and Internet Services Company in Iraq, in light of the requirements of the international standard ISO/IEC 27031:2025. The research adopts a case study approach as an appropriate methodological framework for understanding and analyzing the organizational and technical complexity inherent in telecommunications sector organizations. To achieve the research objectives, a set of integrated data collection tools was employed, including field interviews with technical and administrative staff, a review of organizational documents and approved policies, as well as direct field observation of the ICT infrastructure environment. In addition, a checklist was developed based on the requirements of ISO/IEC 27031:2025 to assess the level of compliance and implementation. A seven-point Likert scale was also utilized to determine the actual level of application for each requirement of the standard. Furthermore, selected quality management tools, such as the Pareto chart and Ishikawa (fishbone) diagram, were applied to analyze gaps and diagnose the root causes affecting the level of readiness. The analysis results revealed that the overall compliance rate with the standard’s requirements reached 53.46%, compared to an overall gap of 46.54%, indicating a moderate level of ICT infrastructure readiness in supporting business continuity. At the level of the main clauses, Clause (8), related to core requirements and infrastructure, recorded the highest compliance rate at 64.6%, reflecting an acceptable level of technical preparedness of the infrastructure supporting service continuity. In contrast, Clause (12), concerning the Minimum Business Continuity Objective (MBCO), ranked lowest with a compliance rate of 45.8%, indicating deficiencies in defining final operational business continuity objectives and aligning them with the technical capabilities of the infrastructure. Moreover, Pareto analysis showed that only eight sub-requirements account for approximately 80% of the total gap, with the most significant weaknesses concentrated in testing and exercise programs, as well as Business Impact Analysis (BIA) requirements. In light of these findings, the study recommends adopting a formal institutional program aligned with ISO/IEC 27031:2025, developing a progressive methodology for periodic testing and exercise programs with documented improvement actions based on their outcomes, and investing in the enhancement of the existing infrastructure by strengthening redundancy capabilities and digital resilience, while directly integrating them with business continuity and disaster recovery plans.
Abstract
The research aims to diagnose the reality of applying the eighth requirement (operation) of the business continuity management system according to the international standard (ISO 22301: 2019), in the General Tax Authority, which is related to planning, implementing and controlling specific processes and procedures to address risks and opportunities, and the research adopted the checklist of the standard ( ISO 22301: 2019), in obtaining information, to measure the extent of application and documentation, the percentages and the weighted arithmetic mean were relied upon, and the research reached a set of result
... Show MoreThis research aims to shed light on the necessity of establishing an information security management system through which banking security risks are managed in the light of the ISO (IEC 27001) standard, through which bank departments seek to demonstrate the management of their security systems and their controls in accordance with the specifications of the standard to obtain an internationally recognized security certificate And the need for senior management in banks to an independent person with scientific and practical qualification and who has accredited certificates in the field of information technology for the purpose of helping them to verify the level of compatibility between the policies and procedures applied and the p
... Show MoreIndicative supervision represents the comparison between direct intervention (acquisition, nationalism) and participation through rules.
The last financial crisis reflected our needs for different approaches of supervision consist with our goals, but the crisis reveals also number of sounds requested and pressured toward direct control (Intervention via forces) through government acquisition and nationalization.
This study attempts to deal with crisis lessons, in the field of choice between indicative and direct supervision which government authorities used to reduce the bad effect on the monetary firms.
Iraqi banks suffered from high levels of direct co
... Show More
The research aims to study the reliability of government institutions, including the audit directors, which are one of the most important oversight formations in the Ministry of Construction, Housing and Public Municipalities, on which the responsibility for comprehensive auditing of all the Ministry's (municipalities) formations falls on the Managing the Audit Program according to the specification (ISO 19011: 2018) to improve the audit performance which requires compliance with the application of the audit management system in accordance with the standard Specification (ISO 19011: 2018), depending on the methodology of the case study, and using of checklists, which were chosen ac
... Show MoreThe results of the analysis showed that there is a correlation between ISO 9001 and the competitive advantage, which shows that the implementation of ISO 9001 in the private colleges achieves a competitive advantage through its ability to employ the entrance of quality systems management according to ISO 9001, By focusing on improving the quality of its educational services in accordance with a clear and understandable policy for all and its ability to meet the expectations, expectations and wishes of students and beneficiaries, which leads to lower costs of operations compared to other colleges and achieve a higher level of reliability and quality and value of services provided and rapid respon
... Show MoreThe aim of this research is to show the importance of the effective use
of the internet in academic libraries; to improve the services and to increase
the competence of librarians.
The research has given some recommendations to improve the quality
of services and the need for cooperative network among academic libraries.
The great importance of training made it as an investment for the organization, and assert the Quality of performance which support it by prepare the employee to the Current and future Jobs . The Research problem a rounded about How to measure the impact of training based on (ISO 10015) and its effect on the Quality of performance , How to evaluation the results of training to attained the training goals . The Research aims to find out the effects of application of international standard guidelines (ISO 10015) to attained the quality of audit work achieved in the Federal Board of Supreme Audit. The Research sought to achieve a number of objectives cognitive and applied on the basis of four key assumptions, and other su
... Show MoreThe current research aims to analyze the extent of the adoption of the standards of ISO 45001: 2018 for occupational safety and health management by the General Establishment of Civil Aviation. The research problem was the extent to which the General Establishment of Civil Aviation approved ISO 45001: 2018 for occupational safety and health management. The questionnaire was used as a primary data collection tool, the sample was distributed (50) form, they were selected from the category of employees of the establishment at different levels to represent the research community. Data were analyzed using the statistical package (SPSS), a number of vector statistical methods were used as well as arithmetic mean, standard deviation, an
... Show MoreAbstract The aim of this research is to show the grade of implementation of ISO 26000 (Social Responsibility Standard), specifically which related in clause sex (consumer issues), this study was achieved in Market Research and Consumer Protection Center (MRCPC) / University of Baghdad. The seven consumer issues of ISO 26000 was analyzed to show the extent of its implementation in MRCPC depending of using a check list as a principle instrument to collect research data and information. Results analysis was achieved by percentages and mean average. The research was leaded some of results and the most importance one was that the grade of implementation of the center in related to consumer issues given in the standard was medium
The research examines the mechanism of application of )ISO 21001: 2018( in the Energy Branch- Electromechanical Engineering at the University of Technology to achieve the quality of the educational service to prepare the branch to obtain the certificate of conformity with the requirements of) ISO 21001: 2018(, the necessary data were collected Depending on the (CHEKLIST) of (ISO 21001: 2018), field interviews and records of the concerned department, The researchers reached a number of results, the most prominent of which was the adoption of high quality leadership leaders and their willingness to implement the standard requirements, The university has a basic structure that qualifies it to implement the international standard, as
... Show More