| Published Version Download ( PDF | 594kB) | License: Creative Commons Attribution Non-commercial No Derivatives 4.0 |
Cloud Inspector: A tool-based approach for public administrations to establish information security processes towards public clouds
Diener, Michael and Bolz, Thomas (2023) Cloud Inspector: A tool-based approach for public administrations to establish information security processes towards public clouds. In: Proceedings of the 9th International Conference on Information Systems Security and Privacy (ICISSP 2023). SciTepress, Science and Technology Publications, Lda, pp. 543-551. ISBN 978-989-758-624-8.Date of publication of this fulltext: 03 Mar 2026 06:33
Book section
DOI to cite this document: 10.5283/epub.78812
Abstract
Digitization is on the rise in Europe’s public administrations. Since the Covid-19 pandemic began, public cloud services have become essential in this domain. However, there are still security concerns about the usage of external cloud resources in business processes of public authorities, although numerous technical concepts for improving security are already available. In this paper, we focus ...
Digitization is on the rise in Europe’s public administrations. Since the Covid-19 pandemic began, public cloud services have become essential in this domain. However, there are still security concerns about the usage of external cloud resources in business processes of public authorities, although numerous technical concepts for improving security are already available. In this paper, we focus on internal processes of information security management systems (ISMS) in public administrations. We identified potential challenges such as a lack of knowledge about cloud security and unclear roles and responsibilities when using ISMS tools in this application domain. As a possible solution, we present a tool-based approach that is based on an easy-to-use online questionnaire, which can be automatically evaluated based on predefined sentiments. With this approach, we can provide the required visibility into the status quo of public cloud security while integrating various stakeholders within public administrations into a holistic ISMS process.
Alternative links to fulltext
Involved Institutions
Details
| Item type | Book section | ||||
| ISBN | 978-989-758-624-8 | ||||
| Title of Book: | Proceedings of the 9th International Conference on Information Systems Security and Privacy (ICISSP 2023) | ||||
|---|---|---|---|---|---|
| Publisher: | SciTepress, Science and Technology Publications, Lda | ||||
| Volume: | 1 | ||||
| Page Range: | pp. 543-551 | ||||
| Date | 2023 | ||||
| Additional Information (public) | 9th International Conference on Information Systems Security and Privacy (ICISSP 2023); Lisbon, Portugal; 20.-23. Feb 2023 | ||||
| Institutions | Business, Economics and Information Systems > Institut für Wirtschaftsinformatik | ||||
| Identification Number |
| ||||
| Related URLs |
| ||||
| Keywords | Cloud Computing, Public Administration, Information Security Management, Security Audits | ||||
| Dewey Decimal Classification | 000 Computer science, information & general works > 004 Computer science 300 Social sciences > 350 Public administration | ||||
| Status | Published | ||||
| Refereed | Yes, this version has been refereed | ||||
| Created at the University of Regensburg | Partially | ||||
| URN of the UB Regensburg | urn:nbn:de:bvb:355-epub-788128 | ||||
| Item ID | 78812 |
Download Statistics
Download Statistics