Data Lifecycle as a Foundation for Building an Enterprise Information Security Policy

المؤلفون

  • Musbah Abobaker Musbah Department of Information Systems, Faculty of Information Technology, Aljufra University, Waddan, Libya

الكلمات المفتاحية:

Information Security, Data Lifecycle, Policy Framework, Iso/Iec 27001, Nist Sp 800-53, Data Governance

الملخص

    In today’s digital landscape, data security is a fundamental concern for organizations, requiring policies that extend beyond traditional technical measures. This study proposes a comprehensive information security framework based on the organizational data lifecycle, ensuring protection throughout the entire data lifecycle, from creation to destruction. By integrating key security principles—confidentiality, integrity, and availability—into each phase, the framework mitigates risks such as unauthorized access, data loss, and regulatory non-compliance. The research employs an analytical approach, drawing on international standards such as ISO/IEC 27001 [1] and NIST SP 800-53 [2], as well as benchmarking tools and case studies. Findings highlight the importance of lifecycle-driven security policies, institutional governance, and adaptive strategies to counter emerging cyber threats. The study offers practical recommendations for policy implementation, contributing to more robust and resilient organizational security practices.

Dimensions

منشور

2025-09-21

كيفية الاقتباس

Musbah Abobaker Musbah. (2025). Data Lifecycle as a Foundation for Building an Enterprise Information Security Policy . African Journal of Advanced Pure and Applied Sciences (AJAPAS), 4(3), 583–590. استرجع في من https://aaasjournals.com/index.php/ajapas/article/view/1472

إصدار

القسم

Articles