Inicio  /  Information  /  Vol: 14 Par: 11 (2023)  /  Artículo
ARTÍCULO
TITULO

Boosting Holistic Cybersecurity Awareness with Outsourced Wide-Scope CyberSOC: A Generalization from a Spanish Public Organization Study

Manuel Domínguez-Dorado    
Francisco J. Rodríguez-Pérez    
Javier Carmona-Murillo    
David Cortés-Polo and Jesús Calle-Cancho    

Resumen

Public sector organizations are facing an escalating challenge with the increasing volume and complexity of cyberattacks, which disrupt essential public services and jeopardize citizen data and privacy. Effective cybersecurity management has become an urgent necessity. To combat these threats comprehensively, the active involvement of all functional areas is crucial, necessitating a heightened holistic cybersecurity awareness among tactical and operational teams responsible for implementing security measures. Public entities face various challenges in maintaining this awareness, including difficulties in building a skilled cybersecurity workforce, coordinating mixed internal and external teams, and adapting to the outsourcing trend, which includes cybersecurity operations centers (CyberSOCs). Our research began with an extensive literature analysis to expand our insights derived from previous works, followed by a Spanish case study in collaboration with a digitization-focused public organization. The study revealed common features shared by public organizations globally. Collaborating with this public entity, we developed strategies tailored to its characteristics and transferrable to other public organizations. As a result, we propose the ?Wide-Scope CyberSOC? as an innovative outsourced solution to enhance holistic awareness among the cross-functional cybersecurity team and facilitate comprehensive cybersecurity adoption within public organizations. We have also documented essential requirements for public entities when contracting Wide-Scope CyberSOC services to ensure alignment with their specific needs, accompanied by a management framework for seamless operation.

 Artículos similares

       
 
Gianmarco Baldini    
Cybersecurity in modern vehicles has received increased attention from the research community in recent years. Intrusion Detection Systems (IDSs) are one of the techniques used to detect and mitigate cybersecurity risks. This paper proposes a novel imple... ver más
Revista: Information

 
Srinath Perera, Xiaohua Jin, Alana Maurushat and De-Graft Joe Opoku    
The COVID-19 pandemic has brought massive online activities and increased cybersecurity incidents and cybercrime. As a result of this, the cyber reputation of organisations has also received increased scrutiny and global attention. Due to increased cyber... ver más
Revista: Informatics

 
Nisha Rawindaran, Ambikesh Jayal and Edmond Prakash    
In many developed countries, the usage of artificial intelligence (AI) and machine learning (ML) has become important in paving the future path in how data is managed and secured in the small and medium enterprises (SMEs) sector. SMEs in these developed ... ver más
Revista: Computers

 
Andrej Androjna, Tanja Brcko, Ivica Pavic and Harm Greidanus    
This paper provides a close investigation into the landscape of both cyber threats and actual incidents in the maritime sector, identifying the cyber trends and challenges as they relate to safe navigation and marine shipping. As an important subset of c... ver más

 
Dmitry Namiot     Pág. 39 - 46
This article deals with ProSe (Proximity Services) in the 3GPP specification. According to 3GPP specifications, proximity services are used to identify possible candidates for direct (D2D - Device to Device) communication between devices. Under the contr... ver más