An innovative soft design science methodology for improving development of a secure information system in Tanzania using multi-layered approach

dc.contributor.authorMshangi, Maduhu
dc.contributor.authorNfuka, Edefonce Ngerama
dc.contributor.authorSanga, Camelius
dc.date.accessioned2017-07-10T13:06:37Z
dc.date.available2017-07-10T13:06:37Z
dc.date.issued2017-07-06
dc.description.abstractThis paper presents an innovative Soft Design Science Methodology for im- proving information systems security using multi-layered security approach. The study applied Soft Design Science Methodology to address the problem- atic situation on how information systems security can be improved. In addi- tion, Soft Design Science Methodology was compounded with mixed research methodology. This holistic approach helped for research methodology trian- gulation. The study assessed security requirements and developed a frame- work for improving information systems security. The study carried out ma- turity level assessment to determine security status quo in the education sector in Tanzania. The study identified security requirements gap (IT security con- trols, IT security measures) using ISO/IEC 21827: Systems Security Engineer- ing-Capability Maturity Model (SSE-CMM) with a rating scale of 0 - 5. The results of this study show that maturity level across security domain is 0.44 out of 5. The finding shows that the implementation of IT security controls and security measures for ensuring security goals are lacking or conducted in ad-hoc. Thus, for improving the security of information systems, organisa- tions should implement security controls and security measures in each secu- rity domain (multi-layer security). This research provides a framework for enhancing information systems security during capturing, processing, storage and transmission of information. This research has several practical contribu- tions. Firstly, it contributes to the body of knowledge of information systems security by providing a set of security requirements for ensuring information systems security. Secondly, it contributes empirical evidence on how informa- tion systems security can be improved. Thirdly, it contributes on the applica-bility of Soft Design Science Methodology on addressing the problematic situation in information systems security. The research findings can be used by decision makers and lawmakers to improve existing cyber security laws, and enact laws for data privacy and sharing of open data.en_US
dc.identifier.citationJournal of Information Security, 2017, 8, 141-165en_US
dc.identifier.issn2153-1242
dc.identifier.urihttps://www.suaire.sua.ac.tz/handle/123456789/1763
dc.language.isoenen_US
dc.publisherJournal of Information Securityen_US
dc.subjectsoft design scienceen_US
dc.subjectinformation systems securityen_US
dc.subjectdesign science researchen_US
dc.subjectsoft systems methodologyen_US
dc.subjectmulti-layered approachen_US
dc.titleAn innovative soft design science methodology for improving development of a secure information system in Tanzania using multi-layered approachen_US
dc.typeArticleen_US
dc.urlDOI: 10.4236/jis.2017.83010en_US

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
JIS_2017070514470746.pdf
Size:
2.64 MB
Format:
Adobe Portable Document Format

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.66 KB
Format:
Item-specific license agreed upon to submission
Description: