SlideShare une entreprise Scribd logo
1  sur  25
Télécharger pour lire hors ligne
Information security for
           increased usage of e-Services


                                                               Ana Meskovska,
                                           ana.meskovska@tpconsulting.com.mk


8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
About me
  • Consultant and Trainer in Trajkovski & Partners
    Consulting
  • Quality and Information Security Manager
  • B.Sc. in Electrical Engineering
  • Master student – e-Business management
  • ICMCI Certified Management Consultant – CMC
  • ECQA certified IT Security and e-Security Manager
  • Member of Board of Directors and Chairman of the
    Committee for Events of itSMF Macedonia
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
CONTENT

  • INTRODUCTION
        – Purpose of presentations issues and understanding
          the issues

  • STARTING FROM THE BASICS
        – What is e-service, information security

  • ANSWER THE CHALLENGES

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
INTRODUCTION


8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Purpose of the presentation
  • Main topic - increasing usage of e-services
  • Why this topic?
        – Explosive development and advancement of ICT
        – Significant growth of internet usage
        – Rapid increase of e-services
        – Flat-lining in usage of e-services


8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Households with Internet access
  • 81.0% in 2009
  • 78.6% in 2008
  • 16.5% in 2007
  • 14% in 2006
                     Source: State Statistical Office

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Households that used computer
       and Internet in 2008 and 2009




                     Source: State Statistical Office

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Purpose of using the Internet in
           the first quarter 2009




                     Source: State Statistical Office

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Citizens using the Internet and e-
                  Government
                                                                                 Overall progress
                                                                                 in citizen using
                                                                                 governmental e-
                                                                                 services between
                                                                                 2004 and 2008:
                                                                                  • 4% - 7% for EU15
                                                                                  • 3% - 4% for EU12



         Figure 1. Percentage of citizens using the Internet and e-Government (Source: Eurostat 2009)

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
WHY, not to use e-services?
  • The e-service doesn’t offer any additional
    benefits vs. the regular service
  • The e-service is not relevant
  • It is too complicated
  • It is not as quality as the regular service
  • A trust issue
  • It is not obligatory
  • …….
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Understanding the issues
  • Why is trust an issue:
        – involvement of sensitive and personal information
        – risk from disclosure and misuse of important
          information and documents
        – absence of physical contact, visual communication
          and tangibility
  • How to start overcoming this issue?
        – Information security
        – …….
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
How to use Information security to
    increase usage of e-services?




8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
STARTING FROM THE BASICS


8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
What means e-service?
  • The attainment and delivery of services
    through electronic media
  • Any asset, deed, effort or performance
    that is made available via the Internet to
    drive new revenue streams or create new
    efficiencies

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Types of e-services
  • E-services that don’t have critical impact on
    our lives or business
        – e-mails, social networks, chats, blogs,
          collaboration workspaces…
  • E-services that have crucial impact on our
    lives, private and business wise
        – e-banking, e-procurement, e-auctions, e-
          government, e-healthcare…

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Example of e-service activities
  •    registering for user identity - e.g. membership application
  •    updating user information - e.g. new address
  •    updating user status - e.g. credit card account balance
  •    submitting application - e.g. credit card, driving license
  •    placing order - e.g. buying and selling of stocks and funds
  •    doing payment transaction - e.g. credit card payment
  •    searching for information - e.g. business matching
  •    exchanging information - e.g. chatroom
  •    receiving information and service - e.g. education notes
  •    doing survey, etc…
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
What means Information?
  • Information is an asset to the organization,
    which has value to organization and needs to
    be protected appropriately
  • Types of information:
        – Printed or written on paper
        – Electronic
        – Send by mail or other electronic connections
        – Presented on company’s promotional materials,
          web site
        – Spoken
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
What means Information Security?
  • Providing confidentiality, integrity and
    availability of written, spoken and electronic
    information
        – Confidentiality - limiting information access and
          disclosure to authorized users and preventing
          access by or disclosure to unauthorized ones
        – Integrity - accuracy and completeness
        – Availability - accessibility and usability upon
          demand by an authorized entity
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
ANSWER THE CHALLENGES


8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Implement Information Security
           Management System
 • Conduct risk assessment
 • Define and enforce IS policies
       – ISMS policy, Privacy policy, e-Privacy policy
 • Define and enforce IS procedures
       – Business continuity planning, Access control ….
 • Identify and implement relevant IS controls
       – firewall, cryptography, SSL, PKI and DC
 • Take in consideration best practices and standards
       – ISO 27001, ITIL, ISO 20000, COBIT, ITAF …
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Identify and achieve CIA balance




8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Raise awareness
  • Raise awareness for:
        – the purpose of e-service
        – the benefits from the e-service
        – the need for information security
        – how is information security organized and
          implemented
        – importance and existence of IS controls and tools

     among management, employees, clients, users, ….
8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Summary
  • Trend: Flat-lining of usage of services
  • Issue: the trust issue
  • Answer: first step in dealing with the trsut
    issue - information security
  • Conclusion: Create and communicate an
    Information Security Management
    System

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Relevant links
• www.iso27001security.com
• http://bledconference.org/index.php/eConference/2010
• http://www.infosec.gov.hk/english/information/services.h
  tml
• http://epp.eurostat.ec.europa.eu/portal/page/portal/euro
  stat/home/
• www.stat.gov.mk
• www.isaca.org
• www.itil-officialsite.com

8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org
Ana Meskovska
                                                                     anameskovska@gmail.com



8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference
14-15 October 2010, Ohrid            www.seeita.org

Contenu connexe

Tendances

Cloud Computing Introduction
Cloud Computing IntroductionCloud Computing Introduction
Cloud Computing Introduction
Adomas Svirskas
 

Tendances (17)

Samos 2020 Summit Intro
Samos 2020 Summit IntroSamos 2020 Summit Intro
Samos 2020 Summit Intro
 
What Should The Public Sector Demand Jerry Fishenden 15.05.2009
What Should The Public Sector Demand   Jerry Fishenden 15.05.2009What Should The Public Sector Demand   Jerry Fishenden 15.05.2009
What Should The Public Sector Demand Jerry Fishenden 15.05.2009
 
19 July 2012 - Loc-poi overview v2
19 July 2012 - Loc-poi overview v2 19 July 2012 - Loc-poi overview v2
19 July 2012 - Loc-poi overview v2
 
Opening – Introductions and Welcome by the host
Opening – Introductions and Welcome by the hostOpening – Introductions and Welcome by the host
Opening – Introductions and Welcome by the host
 
Digital divide and broadband territorial coverage
Digital divide and broadband territorial coverageDigital divide and broadband territorial coverage
Digital divide and broadband territorial coverage
 
Internet of Things Poland 2015, 18-19 listopada, Poznań - Anya Ogórkiewicz
Internet of Things Poland 2015, 18-19 listopada, Poznań - Anya OgórkiewiczInternet of Things Poland 2015, 18-19 listopada, Poznań - Anya Ogórkiewicz
Internet of Things Poland 2015, 18-19 listopada, Poznań - Anya Ogórkiewicz
 
2007 presentation to the exec board of a high street bank - the workplace of...
2007 presentation to the exec board of a high street bank -  the workplace of...2007 presentation to the exec board of a high street bank -  the workplace of...
2007 presentation to the exec board of a high street bank - the workplace of...
 
National Identity ICT Defence and Intelligence Strategy
National  Identity ICT Defence and  Intelligence StrategyNational  Identity ICT Defence and  Intelligence Strategy
National Identity ICT Defence and Intelligence Strategy
 
Cloud Computing Introduction
Cloud Computing IntroductionCloud Computing Introduction
Cloud Computing Introduction
 
08 Ethics, Law and E-commerce
08 Ethics, Law and E-commerce08 Ethics, Law and E-commerce
08 Ethics, Law and E-commerce
 
feb 2018 - Sub22 - The impact of new and emerging information and communicati...
feb 2018 - Sub22 - The impact of new and emerging information and communicati...feb 2018 - Sub22 - The impact of new and emerging information and communicati...
feb 2018 - Sub22 - The impact of new and emerging information and communicati...
 
March 2013 Australian Centre Liberal Arts
March 2013 Australian Centre Liberal Arts March 2013 Australian Centre Liberal Arts
March 2013 Australian Centre Liberal Arts
 
Jan 2017 Submission to AG Re: Metadata use in civil proceedings
Jan 2017 Submission to AG Re: Metadata use in civil proceedingsJan 2017 Submission to AG Re: Metadata use in civil proceedings
Jan 2017 Submission to AG Re: Metadata use in civil proceedings
 
Gov4All : An open data and open services repository for supporting citizen-dr...
Gov4All :An open data and open services repository for supporting citizen-dr...Gov4All :An open data and open services repository for supporting citizen-dr...
Gov4All : An open data and open services repository for supporting citizen-dr...
 
Citizen identity lifecycle july 2016
Citizen identity lifecycle july 2016Citizen identity lifecycle july 2016
Citizen identity lifecycle july 2016
 
Presentatie 'pan europese overheidsvisie - lust of last' - carl bik - ictu - ...
Presentatie 'pan europese overheidsvisie - lust of last' - carl bik - ictu - ...Presentatie 'pan europese overheidsvisie - lust of last' - carl bik - ictu - ...
Presentatie 'pan europese overheidsvisie - lust of last' - carl bik - ictu - ...
 
Feb 2020 - Senate Submission Financial Technology and Regulatory Technology
Feb 2020 - Senate Submission Financial Technology and Regulatory TechnologyFeb 2020 - Senate Submission Financial Technology and Regulatory Technology
Feb 2020 - Senate Submission Financial Technology and Regulatory Technology
 

En vedette

CG and CSR Accomplishments and Awards INet–Skopje
CG and CSR Accomplishments and Awards INet–SkopjeCG and CSR Accomplishments and Awards INet–Skopje
CG and CSR Accomplishments and Awards INet–Skopje
MASIT MACEDONIA
 

En vedette (15)

IT export promotion strategy
 IT export promotion strategy  IT export promotion strategy
IT export promotion strategy
 
ONE
ONEONE
ONE
 
Increasing competitiveness of macedonian businesses through csr
Increasing competitiveness of macedonian businesses through csrIncreasing competitiveness of macedonian businesses through csr
Increasing competitiveness of macedonian businesses through csr
 
Broadband solutions for the last mile
Broadband solutions for the last mileBroadband solutions for the last mile
Broadband solutions for the last mile
 
Why should SME’s participate in FP 7
Why should SME’s participate in FP 7Why should SME’s participate in FP 7
Why should SME’s participate in FP 7
 
E-municipality
E-municipalityE-municipality
E-municipality
 
CG and CSR Accomplishments and Awards INet–Skopje
CG and CSR Accomplishments and Awards INet–SkopjeCG and CSR Accomplishments and Awards INet–Skopje
CG and CSR Accomplishments and Awards INet–Skopje
 
Forefront Identity Manager
Forefront Identity ManagerForefront Identity Manager
Forefront Identity Manager
 
ICT Call 7
ICT Call 7ICT Call 7
ICT Call 7
 
Digital Divide
Digital DivideDigital Divide
Digital Divide
 
Fiber
FiberFiber
Fiber
 
WINS-ICT project overview
WINS-ICT project overviewWINS-ICT project overview
WINS-ICT project overview
 
Integrated Management System
  Integrated Management System  Integrated Management System
Integrated Management System
 
Internet Security in corporate environment
 Internet Security in corporate environment Internet Security in corporate environment
Internet Security in corporate environment
 
SEE ICT Forum activities april - october 2010
SEE ICT Forum activities april - october 2010 SEE ICT Forum activities april - october 2010
SEE ICT Forum activities april - october 2010
 

Similaire à IS for increased usage of e-services

Zlatan Sabic ICT for Governance
Zlatan Sabic ICT for GovernanceZlatan Sabic ICT for Governance
Zlatan Sabic ICT for Governance
yahoosch
 
Evita Baltic dynamics, Riga@16sep2010
Evita Baltic dynamics, Riga@16sep2010Evita Baltic dynamics, Riga@16sep2010
Evita Baltic dynamics, Riga@16sep2010
Ilias Hatzakis
 

Similaire à IS for increased usage of e-services (20)

Digital divide & globalization
Digital divide & globalizationDigital divide & globalization
Digital divide & globalization
 
Grid computing
Grid computingGrid computing
Grid computing
 
ICT Impact in Republic of Kosova
ICT Impact in Republic of KosovaICT Impact in Republic of Kosova
ICT Impact in Republic of Kosova
 
Making csr operational for SME;s
Making csr operational for SME;sMaking csr operational for SME;s
Making csr operational for SME;s
 
IoT meetup Belgrade 21-04-2015
IoT meetup Belgrade 21-04-2015IoT meetup Belgrade 21-04-2015
IoT meetup Belgrade 21-04-2015
 
Your Broadband Society
Your Broadband SocietyYour Broadband Society
Your Broadband Society
 
CSR
CSRCSR
CSR
 
Cg and csr accomplishments and awards
Cg and csr accomplishments and awardsCg and csr accomplishments and awards
Cg and csr accomplishments and awards
 
Future csr activities of the MOE
Future csr activities of the MOEFuture csr activities of the MOE
Future csr activities of the MOE
 
AITA
AITAAITA
AITA
 
General overview of Digital Latvia
General overview of Digital LatviaGeneral overview of Digital Latvia
General overview of Digital Latvia
 
TOOP project: Once Only Principle
TOOP project: Once Only PrincipleTOOP project: Once Only Principle
TOOP project: Once Only Principle
 
EDF2014: Marta Nagy-Rothengass, Head of Unit Data Value Chain, Directorate Ge...
EDF2014: Marta Nagy-Rothengass, Head of Unit Data Value Chain, Directorate Ge...EDF2014: Marta Nagy-Rothengass, Head of Unit Data Value Chain, Directorate Ge...
EDF2014: Marta Nagy-Rothengass, Head of Unit Data Value Chain, Directorate Ge...
 
Presentation from Andrew Sors
Presentation from Andrew SorsPresentation from Andrew Sors
Presentation from Andrew Sors
 
E-goverment Estonia framework Arvo Ott
E-goverment Estonia framework  Arvo OttE-goverment Estonia framework  Arvo Ott
E-goverment Estonia framework Arvo Ott
 
Zlatan Sabic ICT for Governance
Zlatan Sabic ICT for GovernanceZlatan Sabic ICT for Governance
Zlatan Sabic ICT for Governance
 
PPT - Academies - Topic 2 - Digital Society Foundations
PPT - Academies - Topic 2 - Digital Society FoundationsPPT - Academies - Topic 2 - Digital Society Foundations
PPT - Academies - Topic 2 - Digital Society Foundations
 
Towards a BIG Data Public Private Partnership
Towards a BIG Data Public Private PartnershipTowards a BIG Data Public Private Partnership
Towards a BIG Data Public Private Partnership
 
Harvard GSD Exec.Ed Leading Organizations _ lecture, february 5 2014
Harvard GSD Exec.Ed Leading Organizations _ lecture, february 5 2014Harvard GSD Exec.Ed Leading Organizations _ lecture, february 5 2014
Harvard GSD Exec.Ed Leading Organizations _ lecture, february 5 2014
 
Evita Baltic dynamics, Riga@16sep2010
Evita Baltic dynamics, Riga@16sep2010Evita Baltic dynamics, Riga@16sep2010
Evita Baltic dynamics, Riga@16sep2010
 

Plus de MASIT MACEDONIA

Plus de MASIT MACEDONIA (14)

Public Private Partnership
Public Private PartnershipPublic Private Partnership
Public Private Partnership
 
Work programme WINS ICT
Work programme WINS ICTWork programme WINS ICT
Work programme WINS ICT
 
ReDeSign – FP7 Project for Cable Industry
ReDeSign – FP7 Project for Cable IndustryReDeSign – FP7 Project for Cable Industry
ReDeSign – FP7 Project for Cable Industry
 
Opportunities for Macedonian SME's in FP7
Opportunities for Macedonian SME's in FP7Opportunities for Macedonian SME's in FP7
Opportunities for Macedonian SME's in FP7
 
Registry integration and dynamics
Registry integration and dynamicsRegistry integration and dynamics
Registry integration and dynamics
 
E-gov project
E-gov projectE-gov project
E-gov project
 
Vision of registry infrastructure for progressive societies
Vision of registry infrastructure for progressive societiesVision of registry infrastructure for progressive societies
Vision of registry infrastructure for progressive societies
 
One stop shop
One stop shopOne stop shop
One stop shop
 
Functional e-municipality
Functional e-municipalityFunctional e-municipality
Functional e-municipality
 
IT strategy implementation-gtz role
  IT strategy implementation-gtz role  IT strategy implementation-gtz role
IT strategy implementation-gtz role
 
Inevitable synergy
 Inevitable synergy Inevitable synergy
Inevitable synergy
 
MCP Project
MCP ProjectMCP Project
MCP Project
 
ISRM
ISRMISRM
ISRM
 
KKORM
KKORMKKORM
KKORM
 

Dernier

EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
Earley Information Science
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
Enterprise Knowledge
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
giselly40
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 

Dernier (20)

How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
Evaluating the top large language models.pdf
Evaluating the top large language models.pdfEvaluating the top large language models.pdf
Evaluating the top large language models.pdf
 

IS for increased usage of e-services

  • 1. Information security for increased usage of e-Services Ana Meskovska, ana.meskovska@tpconsulting.com.mk 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 2. About me • Consultant and Trainer in Trajkovski & Partners Consulting • Quality and Information Security Manager • B.Sc. in Electrical Engineering • Master student – e-Business management • ICMCI Certified Management Consultant – CMC • ECQA certified IT Security and e-Security Manager • Member of Board of Directors and Chairman of the Committee for Events of itSMF Macedonia 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 3. CONTENT • INTRODUCTION – Purpose of presentations issues and understanding the issues • STARTING FROM THE BASICS – What is e-service, information security • ANSWER THE CHALLENGES 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 4. INTRODUCTION 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 5. Purpose of the presentation • Main topic - increasing usage of e-services • Why this topic? – Explosive development and advancement of ICT – Significant growth of internet usage – Rapid increase of e-services – Flat-lining in usage of e-services 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 6. Households with Internet access • 81.0% in 2009 • 78.6% in 2008 • 16.5% in 2007 • 14% in 2006 Source: State Statistical Office 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 7. Households that used computer and Internet in 2008 and 2009 Source: State Statistical Office 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 8. Purpose of using the Internet in the first quarter 2009 Source: State Statistical Office 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 9. Citizens using the Internet and e- Government Overall progress in citizen using governmental e- services between 2004 and 2008: • 4% - 7% for EU15 • 3% - 4% for EU12 Figure 1. Percentage of citizens using the Internet and e-Government (Source: Eurostat 2009) 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 10. WHY, not to use e-services? • The e-service doesn’t offer any additional benefits vs. the regular service • The e-service is not relevant • It is too complicated • It is not as quality as the regular service • A trust issue • It is not obligatory • ……. 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 11. Understanding the issues • Why is trust an issue: – involvement of sensitive and personal information – risk from disclosure and misuse of important information and documents – absence of physical contact, visual communication and tangibility • How to start overcoming this issue? – Information security – ……. 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 12. How to use Information security to increase usage of e-services? 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 13. STARTING FROM THE BASICS 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 14. What means e-service? • The attainment and delivery of services through electronic media • Any asset, deed, effort or performance that is made available via the Internet to drive new revenue streams or create new efficiencies 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 15. Types of e-services • E-services that don’t have critical impact on our lives or business – e-mails, social networks, chats, blogs, collaboration workspaces… • E-services that have crucial impact on our lives, private and business wise – e-banking, e-procurement, e-auctions, e- government, e-healthcare… 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 16. Example of e-service activities • registering for user identity - e.g. membership application • updating user information - e.g. new address • updating user status - e.g. credit card account balance • submitting application - e.g. credit card, driving license • placing order - e.g. buying and selling of stocks and funds • doing payment transaction - e.g. credit card payment • searching for information - e.g. business matching • exchanging information - e.g. chatroom • receiving information and service - e.g. education notes • doing survey, etc… 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 17. What means Information? • Information is an asset to the organization, which has value to organization and needs to be protected appropriately • Types of information: – Printed or written on paper – Electronic – Send by mail or other electronic connections – Presented on company’s promotional materials, web site – Spoken 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 18. What means Information Security? • Providing confidentiality, integrity and availability of written, spoken and electronic information – Confidentiality - limiting information access and disclosure to authorized users and preventing access by or disclosure to unauthorized ones – Integrity - accuracy and completeness – Availability - accessibility and usability upon demand by an authorized entity 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 19. ANSWER THE CHALLENGES 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 20. Implement Information Security Management System • Conduct risk assessment • Define and enforce IS policies – ISMS policy, Privacy policy, e-Privacy policy • Define and enforce IS procedures – Business continuity planning, Access control …. • Identify and implement relevant IS controls – firewall, cryptography, SSL, PKI and DC • Take in consideration best practices and standards – ISO 27001, ITIL, ISO 20000, COBIT, ITAF … 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 21. Identify and achieve CIA balance 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 22. Raise awareness • Raise awareness for: – the purpose of e-service – the benefits from the e-service – the need for information security – how is information security organized and implemented – importance and existence of IS controls and tools among management, employees, clients, users, …. 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 23. Summary • Trend: Flat-lining of usage of services • Issue: the trust issue • Answer: first step in dealing with the trsut issue - information security • Conclusion: Create and communicate an Information Security Management System 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 24. Relevant links • www.iso27001security.com • http://bledconference.org/index.php/eConference/2010 • http://www.infosec.gov.hk/english/information/services.h tml • http://epp.eurostat.ec.europa.eu/portal/page/portal/euro stat/home/ • www.stat.gov.mk • www.isaca.org • www.itil-officialsite.com 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org
  • 25. Ana Meskovska anameskovska@gmail.com 8th SEEITA – 7th SEE ICT Forum Meeting & 7th MASIT Open Days Conference 14-15 October 2010, Ohrid www.seeita.org