Framework for Digital Data Access Control from Internal Threat in the Public Sector

Abstract

Information management is one of the main challenges in the public sector because the information is often exposed to threat risks, particularly internal ones. Information theft or misuse, which is attributed to human factors, affects the reputation of public sector organizations due to the loss of public trust in the security and confidentiality of the information and personal data that are hacked by internal parties. Most studies focus on general problem solving related to internal threats instead of digital personal data protection. Therefore, this study identifies the main security control elements for personal data access in the public sector, including information security management, human resource security, operational security, access control, and compliance. A comprehensive framework is developed based on the identified security control elements and validated using a case study. Data are collected using interview, observation, and document analysis techniques. The findings contribute to the management of information system security through a systematic approach to controlling internal threats in the public sector. This framework can serve as a guideline for the public sector in managing internal threats to reduce security incidents involving unauthorized access to digital personal data.

Authors and Affiliations

Haslidah Halim, Maryati Mohd Yusof

Keywords

Related Articles

Inverted Pendulum-type Personal Mobility Considering Human Vibration Sensitivity

An inverted pendulum-type PM (personal mobility) has been attracting attention as a low-carbon vehicle. For many people who like to use the PM, ride comfort is important. However, ride comfort of PM has not been focused...

A New PHP Discoverer for Modisco

MoDisco is an Eclipse Generative Modeling Technologies project (GMT Project) intended to make easier the design and building of model-based solutions that are dedicated to legacy systems Model-Driven Reverse Engineering...

Resource Utilization in Cloud Computing as an Optimization Problem

In this paper, an algorithm for resource utilization problem in cloud computing based on greedy method is presented. A privately-owned cloud that provides services to a huge number of users is assumed. For a given resour...

Dynamic Access Control Policy based on Blockchain and Machine Learning for the Internet of Things

The Internet of Things (IoT) is now destroying the barriers between the real and digital worlds. However, one of the huge problems that can slow down the development of this global wave, or even stop it, concerns securit...

Toward Information Diffusion Model for Viral Marketing in Business

Current obstacles in the study of social media marketing include dealing with massive data and real-time updates have motivated to contribute solutions that can be adopted for viral marketing. Since information diffusion...

Download PDF file
  • EP ID EP626546
  • DOI 10.14569/IJACSA.2019.0100809
  • Views 109
  • Downloads 0

How To Cite

Haslidah Halim, Maryati Mohd Yusof (2019). Framework for Digital Data Access Control from Internal Threat in the Public Sector. International Journal of Advanced Computer Science & Applications, 10(8), 61-67. https://europub.co.uk/articles/-A-626546