A systematic review of cyber-resilience assessment frameworks

被引:25
|
作者
Estay, Daniel A. Sepulveda [1 ]
Sahay, Rishikesh [3 ]
Barfod, Michael B. [1 ]
Jensen, Christian D. [2 ]
机构
[1] Tech Univ Denmark, Dept Technol Management & Econ, Lyngby, Denmark
[2] Tech Univ Denmark, Dept Appl Math & Comp Sci, Lyngby, Denmark
[3] Man Energy Solut, Holeby, Denmark
关键词
Literature review; Cyber-resilience; Recovery frameworks; Cyber-attack response; RISK-ASSESSMENT FRAMEWORK; DATA INJECTION ATTACKS; PHYSICAL SYSTEMS; REGULATORY FRAMEWORK; SECURITY FRAMEWORK; SWITCHING ATTACKS; PROTECTION; OPTIMIZATION; MITIGATION; MANAGEMENT;
D O I
10.1016/j.cose.2020.101996
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-attacks are regarded as one of the most serious threats to businesses worldwide. Organizations dependent on Information Technology (IT) derive value not only from preventing cyber-attacks, but also from responding promptly and coherently when cyber-attacks happen so as to minimize their disruptive effect on operations. This capacity is known as cyber-resilience. As multiple cyber-resilience frameworks (CRF) have been proposed in literature, an increased clarity about the scope, characteristics, synergies and gaps in existing CRFs will facilitate scientific research advancement in this area. This paper uses a systematic literature review to identify extant research on CRFs. The analysis is based on a sample representing 36 different industries and 25 different research areas. Through the use of descriptive analysis and thematic categorization, this paper makes a contribution by identifying CRFs as either strategic or operational, by the hierarchy of their decision influence, by the attacks addressed, and through the methods used and the places and institutions doing CRF research. As a result, this work presents an overview map of the current CRF research landscape, identifies relevant research gaps, highlights similarities and synergies between CRFs, and proposes opportunities for interdisciplinary research, as a contribution to guide future research in this area. (C) 2020 Elsevier Ltd. All rights reserved.
引用
收藏
页数:15
相关论文
共 50 条
  • [21] Cyber-Worthiness and Cyber-Resilience to Secure Low Earth Orbit Satellites
    Ormrod, David
    Slay, Jill
    Ormrod, Amy
    [J]. PROCEEDINGS OF THE 16TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2021), 2021, : 257 - 266
  • [22] Supply Chain Cyber-Resilience: Creating an Agenda for Future Research
    Khan, Omera
    Estay, Daniel A. Sepulveda
    [J]. TECHNOLOGY INNOVATION MANAGEMENT REVIEW, 2015, : 6 - 12
  • [23] Intraoperative cyberattacks: cyberthreat awareness and cyber-resilience strategies in anesthesia
    Joseph C. Goldstein
    Heidi V. Goldstein
    [J]. Canadian Journal of Anesthesia/Journal canadien d'anesthésie, 2021, 68 : 1838 - 1839
  • [24] Functional cyber-resilience - Extending the cybersecurity paradigm in critical infrastructures
    de Haan, Johannes
    [J]. 2023 IEEE/ACM 4TH INTERNATIONAL WORKSHOP ON ENGINEERING AND CYBERSECURITY OF CRITICAL SYSTEMS, ENCYCRIS, 2023, : 17 - 22
  • [25] Intraoperative cyberattacks: cyberthreat awareness and cyber-resilience strategies in anesthesia
    Goldstein, Joseph C.
    Goldstein, Heidi V.
    [J]. CANADIAN JOURNAL OF ANESTHESIA-JOURNAL CANADIEN D ANESTHESIE, 2021, 68 (12): : 1838 - 1839
  • [26] Quantifying Cyber-Resilience Against Resource-Exhaustion Attacks
    Fink, Glenn A.
    Griswold, Richard L.
    Beech, Zachary W.
    [J]. 2014 7TH INTERNATIONAL SYMPOSIUM ON RESILIENT CONTROL SYSTEMS (ISRCS), 2014,
  • [27] Cyber-Resilience Enhancement and Protection for Uneconomic Power Dispatch Under Cyber-Attacks
    Zhao, Pengfei
    Gu, Chenghong
    Ding, Yucheng
    Liu, Hong
    Bian, Yuankai
    Li, Shuangqi
    [J]. IEEE TRANSACTIONS ON POWER DELIVERY, 2021, 36 (04) : 2253 - 2263
  • [28] Cyber-resilience for marine navigation by information fusion and change detection
    Dagdilelis, Dimitrios
    Blanke, Mogens
    Andersen, Rasmus H.
    Galeazzi, Roberto
    [J]. OCEAN ENGINEERING, 2022, 266
  • [29] Securing Critical Infrastructure with Blockchain Technology: An Approach to Cyber-Resilience
    Govea, Jaime
    Gaibor-Naranjo, Walter
    Villegas-Ch, William
    [J]. COMPUTERS, 2024, 13 (05)
  • [30] Cyber-resilience of Critical Cyber Infrastructures: Integrating digital twins in the electric power ecosystem
    Salvi, Andrea
    Spagnoletti, Paolo
    Noori, Nadia Saad
    [J]. COMPUTERS & SECURITY, 2022, 112