2021
DOI: 10.3390/app11156909
|View full text |Cite
|
Sign up to set email alerts
|

Respite for SMEs: A Systematic Review of Socio-Technical Cybersecurity Metrics

Abstract: Cybersecurity threats are on the rise, and small- and medium-sized enterprises (SMEs) struggle to cope with these developments. To combat threats, SMEs must first be willing and able to assess their cybersecurity posture. Cybersecurity risk assessment, generally performed with the help of metrics, provides the basis for an adequate defense. Significant challenges remain, however, especially in the complex socio-technical setting of SMEs. Seemingly basic questions, such as how to aggregate metrics and ensure so… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1

Citation Types

0
3
0

Year Published

2021
2021
2024
2024

Publication Types

Select...
8

Relationship

0
8

Authors

Journals

citations
Cited by 14 publications
(3 citation statements)
references
References 133 publications
(307 reference statements)
0
3
0
Order By: Relevance
“…IT refers to technology that is capable of enhancing enterprises' productivity and market competitiveness, including devices, systems, networks, data, etc. When an enterprise sustains its operation by relying on IT, it must build a mechanism to control and protect it [6,7]. Otherwise, the exposure of enterprises to threat will increase.…”
Section: Research Background and Motivementioning
confidence: 99%
“…IT refers to technology that is capable of enhancing enterprises' productivity and market competitiveness, including devices, systems, networks, data, etc. When an enterprise sustains its operation by relying on IT, it must build a mechanism to control and protect it [6,7]. Otherwise, the exposure of enterprises to threat will increase.…”
Section: Research Background and Motivementioning
confidence: 99%
“…SMEs have become put into positions of exploitation, whereby the likelihood of cyber-attacks come at a high price in experiencing cyber incidents. In a recent paper by van Haastrecht, M. et al (2021) [41], SMEs struggle to cope with the rise in cyber security threats leading to intuitive, threat-based cyber security risk assessment approaches for the least digitally mature SMEs, using a socio-technical cyber security framework to help contribute towards the needs of SMEs. The works of van Haastretcht use both a framework and the ADKAR (awareness, desire, knowledge, ability, reinforcement) change management model of Hiatt [42] to guide the research in covering the social dimensions needed to be considered in SMEs.…”
Section: Sme's Cybersecurity Barriers and Challengesmentioning
confidence: 99%
“…In the absence of a resilience mechanism to overcome interruptions in business, as usual, activities in electronic commerce could no longer function [11]. Resilience may be analyzed from the perspective of cyber threats to the information system, as cyber resilience can help organizations to anticipate and manage them [12,13]. At the same time, increasing resilience in electronic commerce can be achieved using Artificial Intelligence, which can contribute to 'readying supply chains to reduce their risk of disruption' [14].…”
Section: Introductionmentioning
confidence: 99%