PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
January 1, 2022IEEE Access13 citationsOpen Access

How Do Organizations Seek Cyber Assurance? Investigations on the Adoption of the Common Criteria and Beyond

NSNan SunCLChang‐Tsun LiHCHin Chan

Key Points

Key points are not available for this paper at this time.

Abstract

Cyber assurance, which is the ability to operate under the onslaught of cyber attacks and other unexpected events, is essential for organizations facing inundating security threats on a daily basis. Organizations usually employ multiple strategies to conduct risk management to achieve cyber assurance. Utilizing cybersecurity standards and certifications can provide guidance for vendors to design and manufacture secure Information and Communication Technology (ICT) products as well as provide a level of assurance of the security functionality of the products for consumers. Hence, employing security standards and certifications is an effective strategy for risk management and cyber assurance. In this work, we begin with investigating the adoption of cybersecurity standards and certifications by surveying 258 participants from organizations across various countries and sectors. Specifically, we identify adoption barriers of the Common Criteria through the designed questionnaire. Taking into account the seven identified adoption barriers, we show the recommendations for promoting cybersecurity standards and certifications. Moreover, beyond cybersecurity standards and certifications, we shed light on other risk management strategies devised by our participants, which provides directions on cybersecurity approaches for enhancing cyber assurance in organizations.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Sun et al. (2022) studied this question.

synapsesocial.com/papers/6a1105a2c56c5252651a0735https://doi.org/10.1109/access.2022.3187211
Ask AI
Helpful
Bookmark
Share
View Full Paper

Also Consider

Synapse has enriched 5 closely related papers on similar clinical questions. Consider them for comparative context:

  1. 1The Open Science Cyber Risk Profile: The Rosetta Stone for Open Science and Cybersecurity2017 · 6 citations
  2. 2Does the common criteria paradigm have a future?2004 · 29 citations
  3. 3Protection Profile for Secure E-Voting Systems2010 · 14 citations
  4. 4Towards agile security assurance2005 · 143 citations
  5. 5A survey on technical threat intelligence in the age of sophisticated cyber attacks2017 · 471 citations