2020
DOI: 10.3390/app10103660
|View full text |Cite
|
Sign up to set email alerts
|

A Holistic Cybersecurity Maturity Assessment Framework for Higher Education Institutions in the United Kingdom

Abstract: As organisations are vulnerable to cyberattacks, their protection becomes a significant issue. Capability Maturity Models can enable organisations to benchmark current maturity levels against best practices. Although many maturity models have been already proposed in the literature, a need for models that integrate several regulations exists. This article presents a light, web-based model that can be used as a cybersecurity assessment tool for Higher Education Institutes (HEIs) of the United Kingdom. The novel… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
36
0
3

Year Published

2020
2020
2023
2023

Publication Types

Select...
4
3
1

Relationship

3
5

Authors

Journals

citations
Cited by 37 publications
(39 citation statements)
references
References 24 publications
0
36
0
3
Order By: Relevance
“…This helps in measuring the overall security level of the organization/system and addressing its weaknesses. Finally, current maturity models use qualitative metrics or processes without considering quantitative metrics as an essential aspect for security assessment ( Aliyu et al, 2020 ). Almuhammadi & Alsaleh (2017) presented a maturity model based on NIST Cyber Security Framework (CSF).…”
Section: Related Workmentioning
confidence: 99%
“…This helps in measuring the overall security level of the organization/system and addressing its weaknesses. Finally, current maturity models use qualitative metrics or processes without considering quantitative metrics as an essential aspect for security assessment ( Aliyu et al, 2020 ). Almuhammadi & Alsaleh (2017) presented a maturity model based on NIST Cyber Security Framework (CSF).…”
Section: Related Workmentioning
confidence: 99%
“…The developed framework was applied in three different OESs in order to test its efficiency, usability and also the level of adoption by security officers. Other similar studies that propose light, web-based models that incorporate all security and privacy regulations and best practices for several organizations were also recently introduced [16], and this is probably where the trends will be heading in the near future.…”
Section: A Novel Maturity Assessment Frameworkmentioning
confidence: 99%
“…In this period, the government would continue to agree, introduce and execute EU laws. After the UK has left the EU, the results of the talks on a long-term 4 EAI Endorsed Transactions on Security and Safety Online First relationship between the UK and the EU would decide the agreements in regard to EU legislation. It is the intention of the UK Government that the NISD will still apply in the United Kingdom upon leaving the European Union [34].…”
Section: Overviewmentioning
confidence: 99%
“…From a practical point of view, organizations that need to comply with both GDPR and NISD will need to be able to understand how these affect their business operations and overall processes. In order to accomplish this, novel maturity models that incorporate both regulations need to be developed and used [4] in accordance to ISO or NIST standards. Also security measures that take into account requirements from both legal frameworks must be deployed, especially those that are focusing on critical infrastructures [64] and industrial control systems that is the heart of many OESs [65].…”
Section: Nisd Impact and Gdpr Security Requirementsmentioning
confidence: 99%
See 1 more Smart Citation