Systematic Literature Review of Security Control Assessment Challenges

N. Othman, A. Norman, M. L. M. Kiah
{"title":"Systematic Literature Review of Security Control Assessment Challenges","authors":"N. Othman, A. Norman, M. L. M. Kiah","doi":"10.1109/ICCSCE54767.2022.9935661","DOIUrl":null,"url":null,"abstract":"The advancement of cybersecurity has called for active effective information security management. Security control (SC) assessment must be empowered to ensure that security implementation is effective and provides expected protection. Lack of comprehensive literature analysis on SC assessment compared to risk and threats assessments are concerning. This research aims to systematically review the trends of SC assessment by identifying, categorizing and analyzing the challenges and available solutions of SC assessment. 34 articles were qualitatively selected with a definite contribution in SC assessment. These articles were reviewed using thematic analysis according to Theme 1: Assessment Challenges, and Theme 2: Proposed Solution. Findings from each theme are systematically categorized to answer research questions. The results of this review are significant in identifying the issues and areas of improvement for future research and can serve as the baseline for SC assessment characteristics.","PeriodicalId":346014,"journal":{"name":"2022 IEEE 12th International Conference on Control System, Computing and Engineering (ICCSCE)","volume":null,"pages":null},"PeriodicalIF":0.0000,"publicationDate":"2022-10-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE 12th International Conference on Control System, Computing and Engineering (ICCSCE)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCSCE54767.2022.9935661","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

The advancement of cybersecurity has called for active effective information security management. Security control (SC) assessment must be empowered to ensure that security implementation is effective and provides expected protection. Lack of comprehensive literature analysis on SC assessment compared to risk and threats assessments are concerning. This research aims to systematically review the trends of SC assessment by identifying, categorizing and analyzing the challenges and available solutions of SC assessment. 34 articles were qualitatively selected with a definite contribution in SC assessment. These articles were reviewed using thematic analysis according to Theme 1: Assessment Challenges, and Theme 2: Proposed Solution. Findings from each theme are systematically categorized to answer research questions. The results of this review are significant in identifying the issues and areas of improvement for future research and can serve as the baseline for SC assessment characteristics.
安全控制评估挑战的系统文献综述
网络安全的发展要求对信息安全进行积极有效的管理。必须授权安全控制(SC)评估,以确保安全实现有效并提供预期的保护。与风险和威胁评估相比,SC评估缺乏全面的文献分析令人担忧。本研究旨在通过识别、分类和分析供应链评估的挑战和可用的解决方案,系统地回顾供应链评估的趋势。定性选择34篇在SC评估中有明确贡献的文章。根据主题1:评估挑战和主题2:建议的解决方案对这些文章进行了专题分析。每个主题的发现都被系统地分类,以回答研究问题。本综述的结果对于确定未来研究的问题和改进领域具有重要意义,并且可以作为SC评估特征的基线。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信