Resumen
During the last years, the number of cyberattacks, especially on web applications, has been increasing. Cyber agents target both large and small companies, which is why it is necessary for organizations to have a tool to help them prevent cyberattacks on their web applications such as a cybersecurity maturity model. The proposed model was built considering frameworks and methodologies such as those provided by NIST and ISO, and it defines four levels of cybersecurity maturity: initial, defined, established, and improved. Additionally, the model includes twelve domains and four categories to be considered as a multidimensional model. The proposed model stands out for incorporating two quality standards, the CSF of NIST and the ISO 27032 standard, and being available as part of a technological solution, a web application. This allows anyone to use the model without requiring assistance from the development team, with a track record of assessments and instant results that include recommendations for each domain on how to improve the maturity level and an assessment history. As a result of the validation, fifteen experts participated in the process where they evaluated a web application of their organization and answered a Google questionnaire. The responses were positive, demonstrating that the model fulfills its purpose of being a useful tool for organizations, enabling a quick and automated evaluation of security in their web applications. This contributes to the prevention of cyberattacks and the protection of the sensitive data of its users.
| Idioma original | Inglés |
|---|---|
| Título de la publicación alojada | Proceedings of the 2023 IEEE 30th International Conference on Electronics, Electrical Engineering and Computing, INTERCON 2023 |
| Editorial | Institute of Electrical and Electronics Engineers Inc. |
| ISBN (versión digital) | 9798350315578 |
| DOI | |
| Estado | Publicada - 2023 |
| Evento | 30th IEEE International Conference on Electronics, Electrical Engineering and Computing, INTERCON 2023 - Lima, Perú Duración: 2 nov. 2023 → 4 nov. 2023 |
Serie de la publicación
| Nombre | Proceedings of the 2023 IEEE 30th International Conference on Electronics, Electrical Engineering and Computing, INTERCON 2023 |
|---|
Conferencia
| Conferencia | 30th IEEE International Conference on Electronics, Electrical Engineering and Computing, INTERCON 2023 |
|---|---|
| País/Territorio | Perú |
| Ciudad | Lima |
| Período | 2/11/23 → 4/11/23 |
ODS de las Naciones Unidas
Este resultado contribuye a los siguientes Objetivos de Desarrollo Sostenible
-
ODS 7: Energía asequible y no contaminante
Huella
Profundice en los temas de investigación de 'Cybersecurity Maturity Model to Prevent Cyberattacks on Web Applications Based on ISO 27032 and NIST'. En conjunto forman una huella única.Citar esto
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver