Learning from cyber security incidents: A systematic review and future research agenda

被引:15
|
作者
Patterson, Clare M. [1 ]
Nurse, Jason R. C. [2 ,3 ]
Franqueira, Virginia N. L. [2 ,3 ]
机构
[1] Univ Kent, Sch Comp, Cyber Secur, Canterbury CT2 7NZ, Kent, England
[2] Univ Kent, Inst Cyber Secur Soc iCSS, Cyber Secur, Canterbury CT2 7NZ, Kent, England
[3] Univ Kent, Sch Comp, Canterbury CT2 7NZ, Kent, England
关键词
Cyber security; Incident investigation; Incident response; Lessons learned; Learning process; Organisational learning; Post -incident review; Security incident; Systematic literature review; Research agenda; SAFETY MANAGEMENT; HEALTH-CARE; INFORMATION; CHALLENGES; FRAMEWORK;
D O I
10.1016/j.cose.2023.103309
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber security incidents are now prevalent in many organisations. Arguably, those who can learn from security incidents and address the underlying causes will reduce the prevalence of similar ones in the future. This research provides a new examination of how organisations learn from incidents by systematically reviewing academic research on organisational learning from cyber security incidents and identifying further research needed in this area. To do this, it considers three research questions: what research has been conducted on learning from cyber security incidents, what learning practices in organisations have been found by research and what improvements have been recommended, and what further research is needed as organisations learn from such incidents. Using the PRISMA method, a total of 3,986 articles were extracted and, from these, a relevant set of 30 were selected for analysis to map the body of research, and to identify future research avenues. Despite learning lessons being recommended by both researchers and industry standards, our findings suggest that this advice is not being fully adopted by organisations. Importantly, these studies have found inadequate participation in learning activities, with superficial causal investigations, scarce effort on ensuring lessons are implemented and no evaluation of whether the actions taken actually reduce future security incidents. More research is needed to understand the right level and which learning practices to invest in for the greatest impact. For practitioners, this review discusses the essential elements of an effective process to learn from incidents. This review provides academics with a novel synthesis of the research undertaken on this topic, enabling them to incorporate the significant findings into their work and potentially explore the research agenda suggested. & COPY; 2023 The Author(s). Published by Elsevier Ltd. ( http://creativecommons.org/licenses/by-nc-nd/4.0/ )
引用
收藏
页数:16
相关论文
共 50 条
  • [21] Ecotourism experience: A systematic review and future research agenda
    Sana
    Chakraborty, Samantak
    Adil, Mohd
    Sadiq, Mohd
    INTERNATIONAL JOURNAL OF CONSUMER STUDIES, 2023, 47 (06) : 2131 - 2156
  • [22] A systematic international entrepreneurship review and future research agenda
    Nave, Edgar
    Ferreira, Joao J.
    CROSS CULTURAL & STRATEGIC MANAGEMENT, 2022, 29 (03) : 639 - 674
  • [23] Frontline ambidexterity: a systematic review and future research agenda
    Lindsey-Hall, Kristina K.
    Marti, Candice L.
    Boylan, Nicole M.
    Baker, Thomas L.
    Ogilvie, Jessica L.
    JOURNAL OF PERSONAL SELLING & SALES MANAGEMENT, 2024, 44 (01) : 50 - 73
  • [24] Cybersecurity research from a management perspective: A systematic literature review and future research agenda
    Lohrke, Franz T.
    Frownfelter-Lohrke, Cynthia
    JOURNAL OF GENERAL MANAGEMENT, 2023,
  • [25] Overconsumption: A Systematic Literature Review and Future Research Agenda
    Kumar, Satinder
    Kathuria, Garima
    Malhotra, Dipti
    INTERNATIONAL JOURNAL OF CONSUMER STUDIES, 2025, 49 (02)
  • [26] Career optimism: A systematic review and agenda for future research
    Eva, Nathan
    Newman, Alexander
    Jiang, Zhou
    Brouwer, Mandy
    JOURNAL OF VOCATIONAL BEHAVIOR, 2020, 116
  • [27] Workplace Spirituality: A Systematic Review and Future Research Agenda
    Dubey, Sujla
    Bedi, Sarbjit Singh
    JOURNAL OF MANAGEMENT SPIRITUALITY & RELIGION, 2024, 21 (01) : 83 - 128
  • [28] Past, present and future of Industry 4.0-a systematic literature review and research agenda proposal
    Liao, Yongxin
    Deschamps, Fernando
    Rocha Loures, Eduardo de Freitas
    Pierin Ramos, Luiz Felipe
    INTERNATIONAL JOURNAL OF PRODUCTION RESEARCH, 2017, 55 (12) : 3609 - 3629
  • [29] Factors Shaping Physicians' Adoption of Telemedicine: A Systematic Review, Proposed Framework, and Future Research Agenda
    Al-Emran, Mostafa
    Al-Qaysi, Noor
    Al-Sharafi, Mohammed A.
    Alhadawi, Hussam S.
    Ansari, Hurmat
    Arpaci, Ibrahim
    Ali, Nor'ashikin
    INTERNATIONAL JOURNAL OF HUMAN-COMPUTER INTERACTION, 2024,
  • [30] Metaverse: Literature Review, Synthesis and Future Research Agenda
    Gao, Hui
    Chong, Alain Yee Loong
    Bao, Haijun
    JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2024, 64 (04) : 533 - 553