• DocumentCode
    147358
  • Title

    Information Security Assurance Model (ISAM) for an Examination Paper Preparation Process

  • Author

    Mogale, Miemie ; Gerber, Mariana ; Carroll, Mariana ; Von Solms, Rossouw

  • Author_Institution
    Sch. of Inf. & Commun. Technol., Nelson Mandela Metropolitan Univ., Port Elizabeth, South Africa
  • fYear
    2014
  • fDate
    13-14 Aug. 2014
  • Firstpage
    1
  • Lastpage
    10
  • Abstract
    This paper has critically assessed a Higher Education Institution´s (HEI) Examination Paper Preparation Process (EPPP) to identify threats and vulnerabilities that could place the security of the process at a risk; thus, compromising the security of the examination papers. Surveys were utilized to identify examiners´ behaviour which could pose a risk to the security of the examination papers. The paper further highlights the vital role the human factor plays in ensuring that the EPPP is secure. The paper proposes an Information Security Assurance Model (ISAM) that is based on information security principles and best practices to manage and improve the security of the EPPP. The model provides a step-by-step guide which could be followed to ensure that relevant information security aspects are covered to ensure that examination papers are handled more securely. The aim of the model is to ensure that examination papers are not accessible to unauthorized individuals; which, may lead to some students being conferred with qualifications that they do not deserve.
  • Keywords
    educational institutions; further education; human factors; security of data; EPPP; HEI examination paper preparation process; ISAM; higher education institution; human factor; information security assurance model; Authorization; Lead; Manuals; Smart phones; higher education institutions; information and communications technology; information security; information security management system; information security risk management; threats; vulnerabilities;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information Security for South Africa (ISSA), 2014
  • Conference_Location
    Johannesburg
  • Print_ISBN
    978-1-4799-3383-9
  • Type

    conf

  • DOI
    10.1109/ISSA.2014.6950505
  • Filename
    6950505