An Information Security Reference Framework for e-Learning Management Systems (ISRFe-LMS)

Sorene Assefa, Von Solms · 2009

Despite the widespread acceptance of e-Learning Management Systems (eLMS), information security, trust and dependability issues still remain the biggest challenge. This paper argues that e-LMS is mainly dependant on Information and Communication Technologies (ICTs) that have inherent Information Security Risks, as they have only technical Information Security Mechanisms, such as password based identification and authentication and access control, which do not necessarily ensure that the security of the e-LMS environment is maintained at all times. This paper investigates how to secure e-LMSs through the creation of an Information Security Reference Framework (ISRFe-LMS) based on the International Organization for Standardization’s (ISO) 27002. ISO 27002 is internationally accepted standard for good practice for Information Security Management. The ISRFe-LMS is created for use as a comprehensive standard for the evaluation of existing e-LMS packages within the context of security conformance.

Read the paper · More papers on PaperTik