kth.sePublications
System disruptions
We are currently experiencing disruptions on the search portals due to high traffic. We are working to resolve the issue, you may temporarily encounter an error message.
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Towards an information security maturity model for secure e-Government services: A stakeholders view
Department of Computer and Systems Sciences, Stockholm University.
KTH. Department of Computer and Systems Sciences, Stockholm University.
KTH.
2011 (English)In: Proceedings of the 5th International Symposium on Human Aspects of Information Security and Assurance, HAISA 2011, 2011, p. 58-73Conference paper, Published paper (Refereed)
Abstract [en]

The paper proposes a comprehensive information security maturity model (ISMM) that addresses both technical and socio/non-technical security aspects. The model is intended for securing e-government services (implementation and service delivery) in an emerging and increasing security risk environment. The paper utilizes extensive literature review and survey study approaches. A total of eight existing ISMMs were selected and critically analyzed. Models were then categorized into security awareness, evaluation and management orientations. Based on the model's strengths-three models were selected to undergo further analyses and then synthesized. Each of the three selected models was either from the security awareness, evaluation or management orientations category. To affirm the findings-a survey study was conducted into six government organizations located in Tanzania. The study was structured to a large extent by the security controls adopted from the Security By Consensus (SBC) model. Finally, an ISMM with five critical maturity levels was proposed. The maturity levels were: undefined, defined, managed, controlled and optimized. The papers main contribution is the proposed model that addresses both technical and non-technical security services within the critical maturity levels. Additionally, the paper enhances awareness and understanding on the needs for security in e-government services to stakeholders.

Place, publisher, year, edition, pages
2011. p. 58-73
Keywords [en]
e-Government, Information Security, Maturity Model, Security services, Technical and Non-technical security, Government data processing, Information services, Mobile security, Surveys, Comprehensive information, E-government services, E-governments, Government organizations, Literature reviews, Technical security, Security of data
National Category
Information Systems
Identifiers
URN: urn:nbn:se:kth:diva-308784Scopus ID: 2-s2.0-84875546106OAI: oai:DiVA.org:kth-308784DiVA, id: diva2:1637257
Conference
5th International Symposium on Human Aspects of Information Security and Assurance, HAISA 2011, London, United Kingdom, July 7-8, 2011
Note

QC 20220212

Available from: 2022-02-12 Created: 2022-02-12 Last updated: 2022-06-25Bibliographically approved

Open Access in DiVA

No full text in DiVA

Scopus

Authority records

Kowalski, StewartYngström, Louise

Search in DiVA

By author/editor
Kowalski, StewartYngström, Louise
By organisation
KTH
Information Systems

Search outside of DiVA

GoogleGoogle Scholar

urn-nbn

Altmetric score

urn-nbn
Total: 30 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf