Systematic approach to cyber resilience operationalization in SMEs
Palabras clave : 
Cyber resilience
Design science research (DSR)
Framework
Grounded theory
Guidelines
SMEs
Fecha de publicación : 
2020
Editorial : 
IEEE
ISSN : 
2169-3536
Nota: 
This work is licensed under a Creative Commons Attribution 4.0 License. For more information, see https://creativecommons.org/licenses/by/4.0/
Cita: 
Carías-Alvarez, J.F. (Juan Francisco); Borges, M.R.S. (Marcos R. S.); Labaka-Zubieta, L. (Leire); et al. "Systematic approach to cyber resilience operationalization in SMEs". IEEE Access. 8, 2020, 174200 - 174221
Resumen
The constantly evolving cyber threat landscape is a latent problem for today’s companies. This is especially true for the Small and Medium-sized Enterprises (SMEs) because they have limited resources to face the threats but, as a group, represent an extensive payload for cybercriminals to exploit. Moreover, the traditional cybersecurity approach of protecting against known threats cannot withstand the rapidly evolving technologies and threats used by cybercriminals. This study claims that cyber resilience, a more holistic approach to cybersecurity, could help SMEs anticipate, detect, withstand, recover from and evolve after cyber incidents. However, to operationalize cyber resilience is not an easy task, and thus, the study presents a framework with a corresponding implementation order for SMEs that could help them implement cyber resilience practices. The framework is the result of using a variation of Design Science Research in which Grounded Theory was used to induce the most important actions required to implement cyber resilience and an iterative evaluation from experts to validate the actions and put them in a logical order. Therefore, this study proposes that the framework could benefit SME managers to understand cyber resilience, as well as help them start implementing it with concrete actions and an order dictated by the experience of experts. This could potentially ease cyber resilience implementation for SMEs by making them aware of what cyber resilience implies, which dimensions it includes and what actions can be implemented to increase their cyber resilience.

Ficheros en este ítem:
Vista previa
Fichero
Systematic_Approach_to_Cyber_Resilience_Operationalization_in_SMEs.pdf
Descripción
Tamaño
2.42 MB
Formato
Adobe PDF


Estadísticas e impacto
0 citas en
0 citas en

Los ítems de Dadun están protegidos por copyright, con todos los derechos reservados, a menos que se indique lo contrario.