An Extended Layered Information Security Architecture (ELISA) for e-Government in Developing Countries

Year of Publication : 2023
Author : Miton Abel Konnon, Nathalie Lodonou, Renaud Horacio Gaffan, Eugene Ezin
Information technologies are improving service delivery to citizens and businesses through access to e-information. Securing e-Government Information involves protecting some information quality criteria and effectively managing risks. This research paper aims to design an Extended Layered Information Security Architecture (ELISA) for e-Government that may be efficient in developing countries. Therefore, an Information Security Architecture is introduced using some recommendations of the USA “National Institute of Standards and Technology” (NIST) Special publications, ISO/ICE 27000 series, and good practices of the TOGAF and COBIT Frameworks. The designed Information Security Architecture ELISA represents a set of three vertical layers and two side layers. The ELISA layers take into consideration people, processes, technology and the concepts of Trust and Reputation (concerning users and applications) and compliance with the regulations in the information systems and the operating environment. The proposed ELISA model is a tool bringing together several components intended for Security Management by operational departments and Security Governance by a special Executive Management responsible for the strategic direction and compliance activities. All security mechanisms provided by the components of the different layers should help to guarantee at least six criteria of Information quality: integrity, availability, confidentiality, effectiveness, efficiency and reliability. The model's applicability is demonstrated by a case study for electronic document authentication management. The accurate use of the ELISA should help to avoid the cascade development of security solutions with interoperability issues and, on the other hand, to improve e-Government Information Security by aligning security requirements with eGovernment and business objective.

e-Government Information Security, Information Security Architecture, Information Systems Security, Information Security Framework, Information Security Compliance.

