A Security-Evaluation Framework for Mobile Cross-Border e-Government Solutions

被引:1
|
作者
Zefferer, Thomas [1 ]
Pruenster, Bernd [1 ]
Kollmann, Christian [1 ]
Corici, Andreea Ancuta [2 ]
Alber, Lukas [3 ,4 ]
Czerny, Roland [3 ,4 ]
Podgorelec, Blaz [3 ,4 ]
机构
[1] A SIT Plus GmbH, Vienna, Austria
[2] Fraunhofer FOKUS Inst, Berlin, Germany
[3] Graz Univ Technol, Inst Appl Informat Proc & Commun IAIK, Graz, Austria
[4] Secure Informat Technol Ctr Austria A SIT, Graz, Austria
关键词
Security evaluation; Risk analysis; Risk evaluation; Security; e-Government;
D O I
10.1145/3598469.3598529
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Security evaluation is crucial for any security-critical system. In this context, a system can mean technical systems, organizations, or any other entity with certain security requirements. The major challenge in doing risk analysis is the trade-off between completeness and complexity. When done on a more abstract level, certain risks are potentially overlooked. When done on a very detailed level, risk analyses quickly become complex and exceed available resources. To tackle this challenge, various norms and standards propose different security evaluation methodologies. These methodologies vary depending on their target scope. Also, these standards typically remain on a rather abstract level to ensure broad applicability to different systems. In practice, this often complicates the application of these standards to concrete technical systems. In this paper, we tackle this issue by proposing a customized security-evaluation framework tailored to the special characteristics of cross-border e-government services. The proposed framework does not re-invent the wheel but combines aspects and approaches of established norms and standards to cherry-pick from each standard those aspects most beneficial for the given context. We evaluated the proposed framework by applying it to a set of software building blocks, which have been developed in the Horizon-2020 project mGov4EU and leverage mobile cross-border e-government services in Europe. The conducted evaluation shows that the proposed framework facilitates the practical application of security evaluations in the targeted domain and supports evaluators in handling the trade-off between completeness and complexity.
引用
收藏
页码:536 / 543
页数:8
相关论文
共 50 条
  • [31] The researches on public security in the e-Government
    Zang Yan-lin
    Liu Yan
    Chen Ge-lin
    Proceedings of 2006 International Conference on Public Administration, 2006, : 298 - 304
  • [32] A mobile location-based framework for secure e-commerce and e-government
    Thomas, Johnson
    Shen, Zhe Ming
    Paprzycki, Marcin
    Crossland, Martin
    MANAGEMENT OF E-COMMERCE AND E-GOVERNMENT, 2007, : 51 - 65
  • [33] Evaluation of an e-government project: Which are the barriers to e-government integration?
    Gaudino S.
    Moro G.
    International Journal of Technology, Policy and Management, 2010, 10 (1-2) : 53 - 72
  • [34] Model for mobile and ubiquitous e-government
    Antovski, Ljupco
    Gusev, Marjan
    7TH EUROPEAN CONFERENCE ON E-GOVERNMENT, PROCEEDINGS, 2007, : 23 - 30
  • [35] An Information Security Framework for Ubiquitous Services in e-Government Structures: A Peruvian Local Government Experience
    Tupia, Manuel
    Bruzza, Mariuxi
    Rodriguez, Flavio
    PROCEEDINGS OF THE 2016 FEDERATED CONFERENCE ON COMPUTER SCIENCE AND INFORMATION SYSTEMS (FEDCSIS), 2016, 8 : 1309 - 1316
  • [36] Cross-Border Acquisitions and Optimal Government Policy
    Bose, Gautam
    Ghosh, Arghya
    Dasgupta, Sudipto
    ECONOMIC RECORD, 2011, 87 (278) : 427 - 437
  • [37] Easing Cross-Border Communication: MOBILE-mediated Communication and Its Framework
    Choi, Kyungsub Stephen
    Kim, Youngsoo
    PROCEEDINGS OF THE 50TH ANNUAL HAWAII INTERNATIONAL CONFERENCE ON SYSTEM SCIENCES, 2017, : 353 - 359
  • [38] Government venture capital and cross-border investment
    Dahaj, Arash Soleimani
    Cozzarin, Brian Paul
    GLOBAL FINANCE JOURNAL, 2019, 41 : 113 - 127
  • [39] Evaluation Framework of Local E-Government and E-Democracy: A Citizens' Perspective
    Lappas, Georgios
    Triantafillidou, Amalia
    Kleftodimos, Alexandros
    Yannas, Prodromos
    2015 IEEE CONFERENCE ON E-LEARNING, E-MANAGEMENT AND E-SERVICES (IC3E), 2015, : 181 - 186
  • [40] Reinventing government communications: Going mobile with e-government
    van der Vyver, A. G.
    INFORMATION MANAGEMENT IN THE MODERN ORGANIZATIONS: TRENDS & SOLUTIONS, VOLS 1 AND 2, 2008, : 1221 - 1227