
Integrating Cybersecurity into Project Management: A Scoping Review of Current Practices and Gaps
Abstract
The increasing reliance on digital tools in project management necessitates enhanced cybersecurity measures to safeguard sensitive information and manage risks effectively. This scoping review investigates the integration of cybersecurity within project management practices, identifying gaps in the existing literature. Following the Arksey and O’Malley framework, systematic search strategies were employed across databases such as IEEE Xplore, Scopus, and Web of Science to gather relevant peer-reviewed articles. Findings reveal that while cybersecurity is recognized as a critical element of project risk management, many project managers lack the necessary expertise to implement effective security measures. The literature is categorized into three main themes: cybersecurity integration in project planning, the role of organizational culture in fostering cybersecurity awareness, and the challenges faced by small and medium-sized enterprises (SMEs) in adopting these practices. The review highlights significant gaps, particularly in empirical studies assessing the effectiveness of cybersecurity strategies across various industries and in the development of frameworks to guide project managers in integrating cybersecurity into project lifecycles. The study concludes that more practical guidance and research are essential to address these challenges. Future research should focus on creating industry-specific frameworks that embed cybersecurity into core project management processes and evaluating their impact on project outcomes.
JEL Classification Code: M15, O32
© 2025 Yusuf Lawal, published by Virginia Tech Publishing
This work is licensed under the Creative Commons Attribution 4.0 License.