Table 1.
Analysis Tools for Bibliometric Research
| No. | Criteria | VOS viewer | CiteSpace | Power BI | Gephi |
|---|---|---|---|---|---|
| 1. | Purpose | Primarily used for constructing and visualizing bibliometric networks, such as citation, co-citation, and co-authorship networks. | An open-source software for network visualization and analysis. | A business analytics tool by Microsoft, used for data visualization and business intelligence. | An open-source software for network visualization and analysis. |
| 2. | Strength | Preferably for text mining and creating co-occurrence networks of terms from scientific literature. | Suitable for detecting emerging trends and sudden bursts of activity in research. | Integrates well with various data sources, provides robust data analysis, and interactive dashboards. | Supports large-scale network analysis and offers various layout algorithms for better visualization. |
| 3. | Visualisation | Offers detailed and interactive visualizations of bibliometric maps. | Provides temporal visualizations and cluster views, highlighting key areas of research. | It offers a variety of visualization options that can be combined into interactive dashboards, allowing users to explore the data dynamically and gain deeper insights into bibliometric patterns and trends. | Highly versatile with numerous options for editing and customizing network visualizations. |
| 4. | Customisation | Customized visualizations to highlight important nodes and connections. | Tailored visualizations to emphasize co-citation networks, keyword co-occurrences, and citation bursts. | Power BI allows extensive customization for business reports and dashboards, while Gephi offers detailed options for visualizing complex network structures. | Rank nodes by metrics such as degree centrality or PageRank. |
Table 2.
Usage of the Risk Management Related to Information Security Term In the Academic Writings
| Used in Title | Source | Total of Academic Writings | ||||
|---|---|---|---|---|---|---|
| 2000 – 2005 | 2006 – 2011 | 2012 – 2017 | 2018 – 2023 | 2024 – 2025 | ||
| Information Security AND Risk Management | WoS | 14 | 74 | 112 | 180 | 38 |
Table 3.
Summarise of Bibliometric Studies on Information Security
| Study (Reference) | Focus/Scope | Bibliometric Methods/Tools | Data Source | Key Findings / Trends | Research Gaps / Future Directions |
|---|---|---|---|---|---|
| Sharma et al. 2023 [21] | Cybersecurity and cyber forensics research (2011–2021); mapping a decade of digital security literature. | Co-authorship, co-citation, citation and keyword analysis using full vs. fractional counting; timeline trends and burst detection (CiteSpace-like approach). | Web of Science (WoS), 2011–2021 publications. |
|
|
| Cybersecurity & Forensics | |||||
| Arroyabe et al. 2024 [22] | Intersection of SME digitalization and cybersecurity – how digital transformation in small businesses relates to security issues. | Bibliometric (R) used for co-occurrence (keyword) clustering and citation analysis. Four main thematic clusters identified via co-word analysis. | WoS + Scopus (417 papers, up to ~2022) on “SMEs + cybersecurity/digitalization”. |
|
|
| Cybersecurity & Digitalization in SMEs | |||||
| Guembe et al. 2025 [23] | Artificial Intelligence in cybersecurity, specifically AI-driven cyberattack and intrusion detection (2014–2024). | Comprehensive bibliometric review using Bibliometric/Bibliophagy (R). Co-authorship networks, keyword co-occurrence maps, and citation metrics analysed. Also used dominance factor for author influence. | Scopus (2014–2024): 2,338 documents (journals, conferences, etc.) on AI-based cyber defence. |
|
|
| AI for Cyberattack Detection | |||||
| Judijanto et al. 2024 [24] | Global landscape of cybersecurity research (2010–2024); evolution of research themes and international collaboration patterns. | VOS viewer used for network visualization (co-authorship, co-word, co-citation networks). Analysed publication counts, collaborative networks and topic clusters over time. | Scopus (2010–2024): cybersecurity-related publications worldwide. |
|
|
| Global Cybersecurity Research Mapping | |||||
| Erdoğan & Akmeşe 2025 [25] | Cybercrime studies (2000–2023); literature on illegal cyber activities (hacking, cyber fraud, etc.) and countermeasures. | Bibliometric (R) and Excel for bibliometric analysis. Examined publication trends, prolific authors, top journals, citation counts; visualized author and country collaboration networks. | Web of Science (2000–2023): 2,566 publications on “cybercrime” related keywords. |
|
|
| Cybercrime Research Trends |

Figure 1.
Total of Publications Activity from 2000 until 2025
Table 4.
Top Ten Journals with Highest Total of Publication Activities (2000 – 2025)
| Top Ten Journals | Total of Publication |
|---|---|
| Computers & Security | 28 |
| Information Security Journal | 16 |
| Handbook of System Safety and Security: Cyber Risk and Risk Management, Cyber Security, Threat Analysis, Functional Safety, Software Systems, and Cyber Physical Systems | 11 |
| IEEE Access | 11 |
| Information and Computer Security | 11 |
| International Journal of Information Security | 9 |
| Journal of Information Security And Applications | 8 |
| International Journal of Advanced Computer Science and Applications | 7 |
| International Journal of Computer Science and Network Security | 6 |
| IET Information Security | 5 |
| International Journal of Information Management | 5 |
Table 5.
Top Ten Journals with Highest Citation (2000 – 2025)
| Top 10 Journal | Times Cited, WoS Core |
|---|---|
| Computers & Security | 882 |
| MIS Quarterly | 391 |
| International Journal of Information Management | 327 |
| Information & Management | 191 |
| International Journal of Critical Infrastructure Protection | 170 |
| Journal of Management Information Systems | 167 |
| Information Systems Research | 156 |
| Decision Support Systems | 141 |
| International Journal of Information Security | 111 |
| Journal of Information Security and Applications | 90 |

Figure 2.
The most important area research on Information Security Risk Management (Source: WoS Research Category Analysis)
Table 6.
Top 10 Publisher With Highest Total of Publications
| Top Ten Publisher | Total Publication |
|---|---|
| Emerald Group Publishing Ltd | 32 |
| Springer | 29 |
| Elsevier Advanced Technology | 28 |
| Elsevier | 25 |
| MDPI | 25 |
| Taylor & Francis Inc | 22 |
| IEEE-Inst Electrical Electronics Engineers Inc | 15 |
| IGI Global | 12 |
| Syngress | 11 |
| Elsevier Sci Ltd | 9 |

Figure 3.
Top 10 Most Productive Countries Publishing on Information Security Risk Management
Table 7.
Top 10 Most Productive Countries Publishing on Information Security Risk Management
| Top 10 Country | Total of Publications |
|---|---|
| USA | 101 |
| China | 24 |
| England | 18 |
| Australia | 14 |
| India | 14 |
| South Korea | 13 |
| Spain | 12 |
| Taiwan | 12 |
| Canada | 10 |
| Norway | 10 |

Figure 4.
Cooperation Network Between Countries in Information Security Risk Management
Table 8.
The Top 10 Most Essential Authors of Publications Related to Information Security Risk Management from 2000 to 2025 in the WoS Database Core Collection
| First Author Full Name | Total of Publication | Total of Citation | Article Title and Doi |
|---|---|---|---|
| Schuett, Jonas | 1 | 332 |
|
| Massimino, Brett | 1 | 238 |
|
| Knowles, William | 1 | 229 |
|
| Uddin, Md. Hamid | 1 | 214 |
|
| Tarei, Pradeep Kumar | 2 | 202 |
|
| Etemadi, Nilofar | 1 | 198 |
|
| Shiau, Wen -Lung | 1 | 196 |
|
| Culot, Giovanna | 1 | 189 |
|
| Fenz, Stefan | 5 | 166 |
|
| Di Lernia, Cary | 1 | 165 |
|

Figure 5.
Keyword Analysis Results
Notes (Figure 5):
High Connectivity: Terms like “Information Security” and “Security” are highly linked, indicating their foundational roles across multiple clusters.
Cross-Cluster Relevance: Keywords such as “Risk” and “Management” connect multiple themes, reflecting their broad applicability in the field.
Cluster Differentiation: Each cluster represents a specific aspect of cybersecurity, from high-level frameworks to specific vulnerabilities and emerging technologies.
Table 9.
Keywords Analysis Results
| Keywords | Links | Total Links Strength | Occurrences |
|---|---|---|---|
| Cluster 1 (Red Coding) : Information System Risk Governance & Performance | |||
| Framework | 17 | 55 | 28 |
| Governance | 11 | 22 | 11 |
| Impact | 14 | 47 | 21 |
| Management | 15 | 62 | 38 |
| Performance | 12 | 32 | 17 |
| Technology | 10 | 23 | 13 |
| Information Security Management | 11 | 21 | 19 |
| Cluster 2 (Green Coding): Integrated Risk Assessment & Analysis | |||
| Computer Security | 9 | 21 | 10 |
| Cybersecurity | 16 | 71 | 47 |
| Risk Analysis | 10 | 23 | 14 |
| Risk Assessment | 12 | 48 | 35 |
| Cluster 3 (Blue Coding): Risks & Vulnerability | |||
| Risks | 13 | 60 | 30 |
| Security | 16 | 87 | 57 |
| Systems | 12 | 46 | 27 |
| Vulnerability | 11 | 26 | 14 |
| Cluster 4 (Yellow Coding): Information Security & Privacy | |||
| Cloud Computing | 6 | 11 | 11 |
| Information Security | 17 | 185 | 159 |
| Privacy | 12 | 26 | 16 |