Inter-Organizational Study of Access Control Security Measures

被引:0
|
作者
Yaokumah, Winfred [1 ]
Okai, Eric Saviour Aryee [2 ]
机构
[1] Pentecost Univ Coll, Fac Engn Sci & Comp, Accra, Ghana
[2] Pentecost Univ Coll, Dept Informat Technol, Accra, Ghana
关键词
Access Control Policy; Information Security; System and Application Access Control; User Access Control Management; User Responsibility and Accountability;
D O I
10.4018/IJTHI.2018010104
中图分类号
G25 [图书馆学、图书馆事业]; G35 [情报学、情报工作];
学科分类号
1205 ; 120501 ;
摘要
This study assesses the level of implementation and management of access control security measures among organizations. A survey was conducted and 233 responses were received from 56 organizations drawn from 5 major industry sectors of Ghana. This study focuses on the four access control clauses, namely access control policy, user access management, user responsibility and accountability, and system and application access control, which were adopted from ISO/IEC27002 international information systems security management standard. Overall, the results show that the organizations' level of implementation and management of access control measures were approximately 66.6% (Level 3 - well defined), indicating that access control measures were documented, approved, and implemented organization-wide. Moreover, the results show significant differences in the implementation and management of access control measures among the organizations. For all the access control measures, the financial and health care institutions outperform educational institutions and government public services.
引用
收藏
页码:60 / 79
页数:20
相关论文
共 50 条
  • [1] Implementation of a Security Access Control Model for Inter-Organizational Healthcare Information Systems
    Chi, Hongmei
    Jones, Edward L.
    Zhao, Lang
    [J]. 2008 IEEE ASIA-PACIFIC SERVICES COMPUTING CONFERENCE, VOLS 1-3, PROCEEDINGS, 2008, : 692 - 696
  • [2] On Access Control Requirements for Inter-Organizational Workflow
    Elkandoussi, Asmaa
    Elbakkali, Hanan
    [J]. PROCEEDINGS OF THE 4TH EDITION OF NATIONAL SECURITY DAYS (JNS4), 2014, : 21 - 26
  • [3] Access control for inter-organizational computer network environment
    Terada, M
    Murayama, Y
    Mansfield, G
    [J]. WORLDWIDE COMPUTING AND ITS APPLICATIONS, 1997, 1274 : 394 - 409
  • [4] Novel Access Control Approach for Inter-organizational Workflows
    El Kandoussi, Asmaa
    El Bakkali, Hanan
    [J]. ICISSP: PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2018, : 345 - 352
  • [5] Access control model for inter-organizational grid virtual organizations
    Nasser, B
    Laborde, R
    Benzekri, A
    Barrère, F
    Kamel, M
    [J]. ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS 2005: OTM 2005 WORKSHOPS, PROCEEDINGS, 2005, 3762 : 537 - 551
  • [6] Toward resolving Access Control Policy Conflict in Inter-Organizational Workflows
    Elkandoussi, Asmaa
    Elbakkali, Hanan
    Elhilali, Narimane
    [J]. 2015 IEEE/ACS 12TH INTERNATIONAL CONFERENCE OF COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2015,
  • [7] Policy Adaptation in Attribute-Based Access Control for Inter-organizational Collaboration
    Das, Saptarshi
    Sural, Sharnik
    Vaidya, Jaideep
    Atluri, Vijayalakshmi
    [J]. 2017 IEEE 3RD INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (CIC), 2017, : 136 - 145
  • [8] Specifying selected security features of inter-organizational workflows
    Mikolajczak, Boleslaw
    Joshi, Sachin
    [J]. INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE FOR MODELLING, CONTROL & AUTOMATION JOINTLY WITH INTERNATIONAL CONFERENCE ON INTELLIGENT AGENTS, WEB TECHNOLOGIES & INTERNET COMMERCE, VOL 2, PROCEEDINGS, 2006, : 958 - +
  • [9] INTER-ORGANIZATIONAL DESIGN FIT IN INTER-ORGANIZATIONAL KNOWLEDGE MANAGEMENT
    Miric, Ana Aleksic
    [J]. SOCIOLOGIJA, 2014, 56 (03) : 343 - 363
  • [10] Inter-organizational Design Fit: Implications for Inter-organizational Learning Theory
    Miric, Ana Aleksic
    [J]. IFKAD 2013: 8TH INTERNATIONAL FORUM ON KNOWLEDGE ASSET DYNAMICS: SMART GROWTH: ORGANIZATIONS, CITIES AND COMMUNITIES, 2013, : 1525 - 1546