<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<TEI xmlns="http://www.tei-c.org/ns/1.0">
  <teiHeader>
    <fileDesc>
      <titleStmt>
        <title type="main" level="a">Application of the guidelines of the Agency for Digital Italy guidelines and CSA Star self-assessment: A Docustar case study</title>
        <author>
          <persName n="1">
            <forename>Pierluigi</forename>
            <surname>Calabrese</surname>
            <placeName type="affiliation">Stella All in One Srl, Italy</placeName>
          </persName>
          <persName n="2">
            <forename>Paola</forename>
            <surname>Lunalbi</surname>
            <placeName type="affiliation">Stella all in one Srl, Italy</placeName>
          </persName>
          <persName n="3">
            <forename>Vincenzo</forename>
            <surname>Ribaudo</surname>
            <placeName type="affiliation">iInformatica Srl, Italy</placeName>
          </persName>
          <persName n="4">
            <forename>Saverio</forename>
            <surname>Crisafulli</surname>
            <placeName type="affiliation">iInformatica Srl, Italy</placeName>
          </persName>
          <persName n="5">
            <forename>Antonio</forename>
            <surname>Ruoto</surname>
            <placeName type="affiliation">iInformatica Srl, Italy</placeName>
          </persName>
          <persName n="6" ref="https://orcid.org/0000-0003-4971-8788" type="ORCID">
            <forename>Vito</forename>
            <surname>Santarcangelo</surname>
            <placeName type="affiliation">iInformatica Srl, Italy</placeName>
          </persName>
          <persName n="7" ref="https://orcid.org/0000-0002-5044-0050" type="ORCID">
            <forename>Diego</forename>
            <surname>Sinitò</surname>
            <placeName type="affiliation">iInformatica Srl, Italy</placeName>
          </persName>
          <persName n="8">
            <forename>Carlo</forename>
            <surname>Bonelli</surname>
            <placeName type="affiliation">Keylogic Srls, Italy</placeName>
          </persName>
          <persName n="9" ref="https://orcid.org/0000-0002-5967-5446" type="ORCID">
            <forename>Giuseppe</forename>
            <surname>Stella</surname>
            <placeName type="affiliation">Stella All in One Srl, Italy</placeName>
          </persName>
        </author>
        <respStmt>
          <resp>This is a section of <title>ASA 2022 Data-Driven Decision Making</title>(DOI: <idno type="DOI">10.36253/979-12-215-0106-3</idno>) by </resp>
          <name>Enrico di Bella, Luigi Fabbris, Corrado Lagazio</name>
        </respStmt>
      </titleStmt>
      <publicationStmt>
        <publisher>Firenze University Press</publisher>
        <pubPlace>Firenze</pubPlace>
        <date when="2023">2023</date>
        <idno type="DOI">https://doi.org/10.36253/979-12-215-0106-3.45</idno>
        <availability>
          <p>Available for academic research purposes</p>
          <p>Open Access</p>
          <p>Copyright Author(s)</p>
          <licence source="text" target="https://creativecommons.org/licenses/by/4.0/legalcode">
            <p>Content licence CC BY 4.0</p>
          </licence>
          <licence source="metadata" target="https://creativecommons.org/publicdomain/zero/1.0/legalcode">
            <p>Metadata licence CC0 1.0</p>
          </licence>
        </availability>
      </publicationStmt>
      <sourceDesc>
        <p>This is original content, published for academic research purposes</p>
      </sourceDesc>
    </fileDesc>
    <encodingDesc>
      <appInfo>
        <application version="2.2" ident="Booksflow">
          <desc>Digital edition XML powered by Booksflow</desc>
        </application>
      </appInfo>
    </encodingDesc>
    <profileDesc>
      <abstract xml:lang="en">
        <p>The paper shows the new particularly rigorous regulatory context introduced by the entry into force of the AGID guidelines with reference to the application of the Italian digital administration code on the formation, management and storage of electronic documents. In this regard, a concrete case study of the innovative software Docustar is presented, developed by the innovative SME Stella All in One, an ISO 27001:2013 certified company. The cloud software implemented in this way represents a real revolution both in terms of digital rights management of documents, but also in terms of AGID compliance. In addition, being a cloud software intended for use by the public administration, the system perfectly meets the requirements of the CSA Star Self-Assessment, another focal point together with the ISO 27001 standard to ensure the security of information on application systems.</p>
      </abstract>
      <textClass>
        <keywords>
          <list>
            <item>ISO 27001</item>
            <item>information security system</item>
            <item>AGID compliance</item>
            <item>CSA star</item>
            <item>digital public administration</item>
          </list>
        </keywords>
      </textClass>
    </profileDesc>
  </teiHeader>
  <text>
    <body>
      <p>It is available online at https://doi.org/10.36253/979-12-215-0106-3.45<ref target="https://doi.org/10.36253/979-12-215-0106-3.45" /></p>
      <div>
        <listBibl>
          <head>References</head>
          <bibl n="112176">Calder, A (2009). Information Security based on ISO 27001/ISO 27002. Van Haren.</bibl>
          <bibl n="112177">Lisi, A. (2009). The Digital Administration Code in Italy: Light and Shade. Curentul Juridic, The Juridical Current, Le Courant Juridique 1, pp. 57-63.</bibl>
          <bibl n="112178">Phattanateeradej, C., Twittie S. (2016). Storage and search tool for cloud provider security information in CSA STAR. 13th International Joint Conference on Computer Science and Software Engineering (JCSSE). IEEE.</bibl>
          <bibl n="112179">Ziming, L. (2008). Paper to digital: Documents in the information age. ABC-CLIO.</bibl>
          <bibl n="112180">Voigt, P., Von dem Bussche, A. (2017). The EU General Data Protection Regulation (GDPR): A Practical Guide. Springer International.</bibl>
          <bibl n="112181">Diamantopoulou, V., Tsohou, A., Karyda, M. (2019). General Data Protection Regulation and ISO/IEC 27001: 2013: Synergies of activities towards organisations’ compliance. International Conference on Trust and Privacy in Digital Business. Springer, Cham, pp</bibl>
        </listBibl>
      </div>
    </body>
  </text>
</TEI>