Affiliation:
1. Department of Information Technology, Pentecost University College, Accra, Ghana
Abstract
This study assesses the level of implementation and management of access control security measures among organizations. A survey was conducted and 233 responses were received from 56 organizations drawn from 5 major industry sectors of Ghana. This study focuses on the four access control clauses, namely access control policy, user access management, user responsibility and accountability, and system and application access control, which were adopted from ISO/IEC27002 international information systems security management standard. Overall, the results show that the organizations' level of implementation and management of access control measures were approximately 66.6% (Level 3 - well defined), indicating that access control measures were documented, approved, and implemented organization-wide. Moreover, the results show significant differences in the implementation and management of access control measures among the organizations. For all the access control measures, the financial and health care institutions outperform educational institutions and government public services.
Subject
Human-Computer Interaction,Information Systems
Reference42 articles.
1. Fundamental and ethics theories of corporate governance.;H.Abdullah;Middle Eastern Finance and Economics,2009
2. A Composite Framework for Behavioral Compliance with Information Security Policies
3. Enhanced Role-Based Access Control for Cloud Security
4. Brown, S., & Yaokumah, W. (2016, November). Evolution in cyber security certifications: Adding theoretical bodies of knowledge. In Proceedings of theGlobal Conference on Information Technology, Sullivan University, Louisville, KY.
5. Goals and Practices in Maintaining Information Systems Security
Cited by
1 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. Exploring Critical Challenges and Factors Influencing E-Learning Systems Security During COVID-19 Pandemic;2022 International Conference on Intelligent Technology, System and Service for Internet of Everything (ITSS-IoE);2022-12-03