Have a personal or library account? Click to login
Business Strategy analysis of Cybersecurity Incidents Cover

Business Strategy analysis of Cybersecurity Incidents

Open Access
|Jun 2021

Abstract

In the current social and economic processes, information and communication services play a decisive role, changing several entities’ operations. The growing dependence that has developed over the last two decades made the security needs introduced political will, which has resulted in an iterative evolution of the regulatory environment. Hence, the legal framework requires that several entities develop protection that includes controls enhancing both preventive and reactive in a risk-proportionate manner under the business value to be protected. Nevertheless, due to the nature of cybersecurity, the development of such capabilities is not the task of a single organisation but all entities involved in cyberspace, including, e.g., individuals, non-profit and for-profit organisations, public sector actors. Therefore, each involved entity should design protection capabilities in a risk-proportionate manner, which requires strategic approaches and tools and requires organisations to learn from security incidents. This paper reviews the essential formal security strategy formulation tools, applying in the Facebook’s case based on publicly available information. The analysis aims to confirm the importance of management’s attitude and support for tackling cybersecurity’s challenges.

DOI: https://doi.org/10.2478/raft-2021-0020 | Journal eISSN: 3100-5071 | Journal ISSN: 3100-5063
Language: English
Page range: 139 - 148
Published on: Jun 28, 2021
In partnership with: Paradigm Publishing Services

© 2021 Zsolt Bederna, Zoltan Rajnai, Tamas Szadeczky, published by Nicolae Balcescu Land Forces Academy
This work is licensed under the Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 License.