Recent Trends in Information and Cyber Security Maturity Assessment: A Systematic Literature Review

被引:1
作者
Brezavscek, Alenka [1 ]
Baggia, Alenka [1 ]
机构
[1] Univ Maribor, Fac Org Sci, Kranj 4000, Slovenia
关键词
cyber security; information security; maturity assessment; maturity model; maturity framework; systematic literature review; SLR; RESEARCH COMMUNITIES; MODELS; MANAGEMENT; FRAMEWORK;
D O I
10.3390/systems13010052
中图分类号
C [社会科学总论];
学科分类号
03 ; 0303 ;
摘要
This work represents a comprehensive and systematic literature review (SLR) that follows the PRISMA (Preferred Reporting Items for Systematic Reviews and Meta-Analyses) guidelines for research assessing information and cyber security maturity. The period from 2012 to 2024 was considered and the final collection of 96 studies was taken into account. Our findings were summarised in two stages, a quantitative analysis and a qualitative synthesis. In the first part, various quantitative indicators were used to analyse the evolution of the information and cyber security maturity assessment domain over the last twelve years. The qualitative synthesis, which was limited to 36 research papers, categorises the studies into three key areas: the development of new maturity models, the implementation of established models and frameworks, and the advancement of methodologies to support maturity assessments. The findings reveal significant progress in sector-specific customisation, the growing importance of lightweight models for small and medium-sized enterprises (SMEs), and the integration of emerging technologies. This study provides important insights into the evolving landscape of information and cyber security maturity assessment and provides actionable recommendations for academia and industry to improve security resilience and support the adoption of tailored, effective maturity models.
引用
收藏
页数:42
相关论文
共 124 条
[1]  
Garba AA, 2020, International Journal of Engineering & Technology, V9, P779, DOI [10.14419/ijet.v9i3.30719, 10.14419/ijet.v9i3.30719, DOI 10.14419/IJET.V9I3.30719]
[2]   Cybersecurity Risk Assessment Approach for Malaysian Organizations: Malaysian Universities as Case Study [J].
Aborujilah, Abdulaziz ;
Al-Othmani, Abdulaleem Z. ;
Hussien, Nur Syahela ;
Mokhtar, Shamsul Anuar ;
Long, Zalizah Awang ;
Nizam, Mohd .
2022 9TH INTERNATIONAL CONFERENCE ON ELECTRICAL AND ELECTRONICS ENGINEERING (ICEEE 2022), 2022, :440-450
[3]   A Critical Review of Maturity Model Development in the Digitisation Era [J].
Adekunle, Samuel Adeniyi ;
Aigbavboa, Clinton ;
Ejohwomu, Obuks ;
Ikuabe, Matthew ;
Ogunbayo, Babatunde .
BUILDINGS, 2022, 12 (06)
[4]   Adopting security maturity model to the organizations' capability model [J].
Al-Matari, Osamah M. M. ;
Helal, Iman M. A. ;
Mazen, Sherif A. ;
Elhennawy, Sherif .
EGYPTIAN INFORMATICS JOURNAL, 2021, 22 (02) :193-199
[5]   Big Data Maturity Assessment Models: A Systematic Literature Review [J].
Al-Sai, Zaher Ali ;
Husin, Mohd Heikal ;
Syed-Mohamad, Sharifah Mashita ;
Abdullah, Rosni ;
Zitar, Raed Abu ;
Abualigah, Laith ;
Gandomi, Amir H. .
BIG DATA AND COGNITIVE COMPUTING, 2023, 7 (01)
[6]   A Holistic Cybersecurity Maturity Assessment Framework for Higher Education Institutions in the United Kingdom [J].
Aliyu, Aliyu ;
Maglaras, Leandros ;
He, Ying ;
Yevseyeva, Iryna ;
Boiten, Eerke ;
Cook, Allan ;
Janicke, Helge .
APPLIED SCIENCES-BASEL, 2020, 10 (10)
[7]   Cybersecurity maturity assessment framework for higher education institutions in Saudi Arabia [J].
Almomani, Iman ;
Ahmed, Mohanned ;
Maglaras, Leandros .
PEERJ COMPUTER SCIENCE, 2021, 7
[8]  
[Anonymous], 2022, ISO/IEC 27002:2022
[9]  
[Anonymous], 2014, Information Security, Cybersecurity and Privacy Protection
[10]  
[Anonymous], 2022, ISO/IEC Information TechnologySecurity TechniquesSystems Security EngineeringCapability Maturity Model (SSE-CMM)