Direkt zum Inhalt

Diener, Michael ; Bolz, Thomas

Cloud Inspector: A tool-based approach for public administrations to establish information security processes towards public clouds

Diener, Michael and Bolz, Thomas (2023) Cloud Inspector: A tool-based approach for public administrations to establish information security processes towards public clouds. In: Proceedings of the 9th International Conference on Information Systems Security and Privacy (ICISSP 2023). SciTepress, Science and Technology Publications, Lda, pp. 543-551. ISBN 978-989-758-624-8.

Date of publication of this fulltext: 03 Mar 2026 06:33
Book section
DOI to cite this document: 10.5283/epub.78812


Abstract

Digitization is on the rise in Europe’s public administrations. Since the Covid-19 pandemic began, public cloud services have become essential in this domain. However, there are still security concerns about the usage of external cloud resources in business processes of public authorities, although numerous technical concepts for improving security are already available. In this paper, we focus ...

Digitization is on the rise in Europe’s public administrations. Since the Covid-19 pandemic began, public cloud services have become essential in this domain. However, there are still security concerns about the usage of external cloud resources in business processes of public authorities, although numerous technical concepts for improving security are already available. In this paper, we focus on internal processes of information security management systems (ISMS) in public administrations. We identified potential challenges such as a lack of knowledge about cloud security and unclear roles and responsibilities when using ISMS tools in this application domain. As a possible solution, we present a tool-based approach that is based on an easy-to-use online questionnaire, which can be automatically evaluated based on predefined sentiments. With this approach, we can provide the required visibility into the status quo of public cloud security while integrating various stakeholders within public administrations into a holistic ISMS process.



Involved Institutions


Details

Item typeBook section
ISBN978-989-758-624-8
Title of Book:Proceedings of the 9th International Conference on Information Systems Security and Privacy (ICISSP 2023)
Publisher:SciTepress, Science and Technology Publications, Lda
Volume:1
Page Range:pp. 543-551
Date2023
Additional Information (public)9th International Conference on Information Systems Security and Privacy (ICISSP 2023); Lisbon, Portugal; 20.-23. Feb 2023
InstitutionsBusiness, Economics and Information Systems > Institut für Wirtschaftsinformatik
Identification Number
ValueType
10.5220/0011694900003405DOI
Related URLs
URLURL Type
https://icissp.scitevents.org/?y=2025Congress
KeywordsCloud Computing, Public Administration, Information Security Management, Security Audits
Dewey Decimal Classification000 Computer science, information & general works > 004 Computer science
300 Social sciences > 350 Public administration
StatusPublished
RefereedYes, this version has been refereed
Created at the University of RegensburgPartially
URN of the UB Regensburgurn:nbn:de:bvb:355-epub-788128
Item ID78812

Export bibliographical data

Owner only: item control page

nach oben