Dynamic framework for assessing cyber security risks in a changing environment

被引:0
|
作者
Naumov, Sergey [1 ]
Kabanov, Ilya [2 ]
机构
[1] MIT, Sloan Sch Management, 77 Massachusetts Ave, Cambridge, MA 02139 USA
[2] CDI Corp, Cambridge, MA USA
关键词
risk assessment; cybersecurity; risk management; system dynamics;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Cyber risk assessment frameworks aim at addressing a challenging problem that public and commercial organizations and nations embrace today - a proper estimation of likelihood of cyber-related risks and assessment of their potential impact on an enterprise. However, current frameworks fail at adapting to changes which happen in dynamically shifting environments and keep organizations blind to new possible threats. These threats may occur because of different changes happening internally or externally of the organization. For example, the global presence or digital footprint of the organization can significantly increase the exposure of an organization to cyber threats. Therefore, practitioners need new instruments which can be used to advise enterprises when and how their risk assessment methods and processes should be adjusted in order to stay relevant in a rapidly changing environment. In this work, the authors propose and validate a new method of applying a system dynamics approach for designing a dynamic risk assessment framework and introduce areas of future work.
引用
收藏
页数:4
相关论文
共 50 条
  • [1] Assessing ship cyber risks: a framework and case study of ECDIS security
    Boris Svilicic
    Junzo Kamahara
    Jasmin Celic
    Johan Bolmsten
    [J]. WMU Journal of Maritime Affairs, 2019, 18 : 509 - 520
  • [2] Assessing ship cyber risks: a framework and case study of ECDIS security
    Svilicic, Boris
    Kamahara, Junzo
    Celic, Jasmin
    Bolmsten, Johan
    [J]. WMU JOURNAL OF MARITIME AFFAIRS, 2019, 18 (03) : 509 - 520
  • [3] Cyber Security Risks in Emerging South African Smart Cities: Towards a Cyber Security Framework
    Cornelius, Francois Paul
    Rensburg, Shandre Kim Jansen van
    Kader, Sarika
    [J]. PERSPECTIVES ON GLOBAL DEVELOPMENT AND TECHNOLOGY, 2023, 22 (1-2) : 107 - 141
  • [4] Applications and Security Risks of Artificial Intelligence for Cyber Security in Digital Environment
    Aurucci, Paola
    [J]. INTELLIGENT ENVIRONMENTS 2018, 2018, 23 : 308 - 317
  • [5] Cyber security risks in globalized supply chains: conceptual framework
    Pandey, Shipra
    Singh, Rajesh Kumar
    Gunasekaran, Angappa
    Kaushik, Anjali
    [J]. JOURNAL OF GLOBAL OPERATIONS AND STRATEGIC SOURCING, 2020, 13 (01) : 103 - 128
  • [6] A FRAMEWORK FOR EVALUATION OF CYBER SECURITY RISKS USING MONITORING DATA
    Lieuwen, Timothy
    Perullo, Christopher
    Kee, Jared
    [J]. PROCEEDINGS OF ASME TURBO EXPO 2023: TURBOMACHINERY TECHNICAL CONFERENCE AND EXPOSITION, GT2023, VOL 6, 2023,
  • [7] Introducing the Six-Ware Cyber Security Framework Concept to Enhancing Cyber Security Environment
    Gultom, Rudy
    Midhio, Wayan
    Silitonga, T.
    Pudjiatmoko, S.
    [J]. PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON CYBER WARFARE AND SECURITY (ICCWS 2018), 2018, : 262 - 271
  • [8] A framework for assessing RFID system security and privacy risks
    Rotter, Pawel
    [J]. IEEE PERVASIVE COMPUTING, 2008, 7 (02) : 70 - 77
  • [9] A Cyber-Security Culture Framework for Assessing Organization Readiness
    Georgiadou, Anna
    Mouzakitis, Spiros
    Bounas, Kanaris
    Askounis, Dimitrios
    [J]. JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2022, 62 (03) : 452 - 462
  • [10] Assessing water security and adaptation measures in a changing environment
    Wang Xiao-Jun
    Zhang Jian-Yun
    Shanisuddin, Shaiiid
    Bi Shou-Hai
    He Rui-Min
    Zhang Xu
    [J]. HYDROLOGICAL SCIENCES AND WATER SECURITY: PAST, PRESENT AND FUTURE, 2015, 366 : 129 - 130