2 résultats pour « Cyber Security »

Towards the Integration of Cyber Security and Enterprise Architecture to Improve Cyber Risk Management

Integrating Cyber Security (CS) with Enterprise Architecture (EA) offers a holistic approach to managing complex cyber risks. This study, through literature review, focus groups, and interviews, identified four key integration strategies: embedding CS in EA frameworks, leveraging agile secure development, enhancing knowledge exchange, and aligning CS/EA functions. Implementing these can improve Cyber Risk Management efficiency and reliability.

A Decision Model on Optimising Cybersecurity Controls Using Organisation Preferences

Optimizing cybersecurity involves understanding it as an organizational concern with varying stakeholder perspectives. Instead of viewing it as a standalone issue, decision-makers should align security measures with business goals. This paper proposes a model considering organizational priorities, translating them into a utility function for evaluating security controls, and finding an optimal balance between risk, cost, and benefit.