Learning from cyber security incidents: A systematic review and future research agenda

被引:15
|
作者
Patterson, Clare M. [1 ]
Nurse, Jason R. C. [2 ,3 ]
Franqueira, Virginia N. L. [2 ,3 ]
机构
[1] Univ Kent, Sch Comp, Cyber Secur, Canterbury CT2 7NZ, Kent, England
[2] Univ Kent, Inst Cyber Secur Soc iCSS, Cyber Secur, Canterbury CT2 7NZ, Kent, England
[3] Univ Kent, Sch Comp, Canterbury CT2 7NZ, Kent, England
关键词
Cyber security; Incident investigation; Incident response; Lessons learned; Learning process; Organisational learning; Post -incident review; Security incident; Systematic literature review; Research agenda; SAFETY MANAGEMENT; HEALTH-CARE; INFORMATION; CHALLENGES; FRAMEWORK;
D O I
10.1016/j.cose.2023.103309
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber security incidents are now prevalent in many organisations. Arguably, those who can learn from security incidents and address the underlying causes will reduce the prevalence of similar ones in the future. This research provides a new examination of how organisations learn from incidents by systematically reviewing academic research on organisational learning from cyber security incidents and identifying further research needed in this area. To do this, it considers three research questions: what research has been conducted on learning from cyber security incidents, what learning practices in organisations have been found by research and what improvements have been recommended, and what further research is needed as organisations learn from such incidents. Using the PRISMA method, a total of 3,986 articles were extracted and, from these, a relevant set of 30 were selected for analysis to map the body of research, and to identify future research avenues. Despite learning lessons being recommended by both researchers and industry standards, our findings suggest that this advice is not being fully adopted by organisations. Importantly, these studies have found inadequate participation in learning activities, with superficial causal investigations, scarce effort on ensuring lessons are implemented and no evaluation of whether the actions taken actually reduce future security incidents. More research is needed to understand the right level and which learning practices to invest in for the greatest impact. For practitioners, this review discusses the essential elements of an effective process to learn from incidents. This review provides academics with a novel synthesis of the research undertaken on this topic, enabling them to incorporate the significant findings into their work and potentially explore the research agenda suggested. & COPY; 2023 The Author(s). Published by Elsevier Ltd. ( http://creativecommons.org/licenses/by-nc-nd/4.0/ )
引用
收藏
页数:16
相关论文
共 50 条
  • [31] Panic buying research: A systematic literature review and future research agenda
    Billore, Soniya
    Anisimova, Tatiana
    INTERNATIONAL JOURNAL OF CONSUMER STUDIES, 2021, 45 (04) : 777 - 804
  • [32] Cyber-Security Incidents: A Review Cases in Cyber-Physical Systems
    Al-Mhiqani, Mohammed Nasser
    Ahmad, Rabiah
    Yassin, Warusia
    Hassan, Aslinda
    Abidin, Zaheera Zainal
    Ali, Nabeel Salih
    Abdulkareem, Karrar Hameed
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2018, 9 (01) : 499 - 508
  • [33] Internal auditing in the public sector: a systematic literature review and future research agenda
    Nerantzidis, Michail
    Pazarskis, Michail
    Drogalas, George
    Galanis, Stergios
    JOURNAL OF PUBLIC BUDGETING ACCOUNTING & FINANCIAL MANAGEMENT, 2022, 34 (02) : 189 - 209
  • [34] The commercial impact of live streaming: A systematic literature review and future research agenda
    Xu, Yujun
    Kapitan, Sommer
    Phillips, Megan
    INTERNATIONAL JOURNAL OF CONSUMER STUDIES, 2023, 47 (06) : 2495 - 2527
  • [35] Blockchain in healthcare: A systematic literature review, synthesizing framework and future research agenda
    Tandon, Anushree
    Dhir, Amandeep
    Islam, A. K. M. Najmul
    Mantymaki, Matti
    COMPUTERS IN INDUSTRY, 2020, 122
  • [36] An Evolution of Entrepreneurial Ecosystem Studies: A Systematic Literature Review and Future Research Agenda
    Thai, Quoc Hoang
    Mai, Khuong Ngoc
    Do, Tung Thanh
    SAGE OPEN, 2023, 13 (01):
  • [37] Generative artificial intelligence in creative contexts: a systematic review and future research agenda
    Heigl, Rebecca
    MANAGEMENT REVIEW QUARTERLY, 2025,
  • [38] Uniting cyber security and machine learning: Advantages, challenges and future research
    Wazid, Mohammad
    Das, Ashok Kumar
    Chamola, Vinay
    Park, Youngho
    ICT EXPRESS, 2022, 8 (03): : 313 - 321
  • [39] Political social media marketing: a systematic literature review and agenda for future research
    Abid, Aman
    Roy, Sanjit K.
    Lees-Marshment, Jennifer
    Dey, Bidit L.
    Muhammad, Syed S.
    Kumar, Satish
    ELECTRONIC COMMERCE RESEARCH, 2025, 25 (02) : 741 - 776
  • [40] Corporate entrepreneurship: a systematic literature review and future research agenda
    Urbano, David
    Turro, Andreu
    Wright, Mike
    Zahra, Shaker
    SMALL BUSINESS ECONOMICS, 2022, 59 (04) : 1541 - 1565