Further Strategy Analysis of Cybersecurity Incidents
The result's identifiers
Result code in IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F00216224%3A14220%2F21%3A00124490" target="_blank" >RIV/00216224:14220/21:00124490 - isvavai.cz</a>
Result on the web
<a href="https://www.sciendo.com/article/10.2478/raft-2021-0032" target="_blank" >https://www.sciendo.com/article/10.2478/raft-2021-0032</a>
DOI - Digital Object Identifier
<a href="http://dx.doi.org/10.2478/raft-2021-0032" target="_blank" >10.2478/raft-2021-0032</a>
Alternative languages
Result language
angličtina
Original language name
Further Strategy Analysis of Cybersecurity Incidents
Original language description
In current socio-economic processes, info-communication services play a determining role, modifying the activities of certain actors. The growing dependence that has developed over the past two decades has imposed the need to give political will to security, which has led to an iterative evolution of the regulatory environment. Therefore, the regulatory framework requires certain entities to develop safeguards including controls that enhance both prevention and response in a manner commensurate with the business value of the information to be protected. However, due to the nature of cybersecurity, developing such countermeasures is not the task of a standalone organization but all entities in cyberspace in a wide range, from individuals to the public sector. Therefore, each entity involved must design protection capabilities in a manner commensurate with the risk, which requires strategic tools and methods and drives organizations to learn from their security incidents. Following our previous paper “Business strategy analysis of cybersecurity incidents” (Bederna et al.) on the topic, this paper reviews the essential formal security strategy formulation tools applied in the cases of Yahoo! and Estonia. Both are based on publicly available information. The analysis confirms the importance of managements’ or the government’s attitude and support for solving cybersecurity challenges.
Czech name
—
Czech description
—
Classification
Type
J<sub>ost</sub> - Miscellaneous article in a specialist periodical
CEP classification
—
OECD FORD branch
50501 - Law
Result continuities
Project
<a href="/en/project/EF16_019%2F0000822" target="_blank" >EF16_019/0000822: CyberSecurity, CyberCrime and Critical Information Infrastructures Center of Excellence</a><br>
Continuities
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Others
Publication year
2021
Confidentiality
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Data specific for result type
Name of the periodical
Land Forces Academy Review
ISSN
2247-840X
e-ISSN
—
Volume of the periodical
26
Issue of the periodical within the volume
3
Country of publishing house
PL - POLAND
Number of pages
10
Pages from-to
251-260
UT code for WoS article
—
EID of the result in the Scopus database
—