Skip to content
Review

A Critical Review of Continuous Threat Exposure Management and Zero Trust Security in Cloud–IoT Ecosystems

2026 · Journal of Information Security System and Cyber Criminology Research · Vol 3, pp. 41-52 · 0 citations

TL;DR

A review of the literature suggests that less than 35% of current solutions have combined dynamic risk scoring with automated access control, while less than 25% of current solutions have allowed real-time adaptive policy enforcement.

Abstract

The rise in Cloud–Internet of Things (Cloud–IoT) infrastructure has greatly increased the exposure of organizations to cyber threats, with recent studies showing that over 68% of security breaches have originated from misconfigured cloud resources. Continuous Threat Exposure Management (CTEM) and Zero Trust Security (ZTS) models have been proposed to address these challenges; however, nearly 70% of current implementations are still detection-oriented rather than exposure-predictive. This critical review statistically evaluates current research on CTEM models, Zero Trust frameworks, and artificial intelligence-based cybersecurity solutions in multi-cloud and edge environments. A review of the literature suggests that less than 35% of current solutions have combined dynamic risk scoring with automated access control, while less than 25% of current solutions have allowed real-time adaptive policy enforcement. There is a great need for improvement in predictive threat exposure modelling, autonomous security orchestration, and continuous exposure mitigation in heterogeneous cloud–IoT infrastructures. The review identifies essential research goals in the development of an AI-based adaptive cyber defence framework that is predictive, intelligent, and continuously risk-driven in a Zero-Trust security paradigm.

View source

Similar papers

Conference Jul 2026

Review of Cyber Threat Detection Techniques in Cloud Computing Environment

Cloud is the essential component for modern computer systems, offering businesses flexible scalability and on-demand resources. However, as attackers use more complex techniques to compromise cloud networks, this technological advancement has ushered in a new era of cybersecurity challenges. Wide-ranging effects, such...

Pradnya Patil, J. Bakal · 0 citations
Review Open access Aug 2026

Cloud Security Challenges and Risk Management in Modern Cloud Computing Environment

The study demonstrates that the key factors to achieving effective cloud security are continuous monitoring, robust governance policies, employee awareness training, and high-level cybersecurity frameworks.

Veeramani Sampathkumar, Dinesh Kumar Ramaraj, Rajesh Kotha et al. · 0 citations
Review Open access Aug 2026

A Comprehensive Review of Cybersecurity Threats, Vulnerabilities, and Mitigation Techniques in the Internet of Things (IoT)

The ways in which artificial intelligence, blockchain technology, edge computing, and Zero Trust Architecture will transform IoT security paradigms are examined, which will reveal long-standing issues such as resource limitations, device heterogeneity, and scaling challenges.

Muhammad Sami Intizar, Maria Sikandar, Aqsa Siddique et al. · 0 citations
Review Open access Aug 2026

Cloud Security and Cyber Resilience Strategies for Enterprise Infrastructure in Saudi Arabia

A Saudi Enterprise Cloud Cyber-Resilience Framework which integrates compliance alignment, architectural controls, operational preparedness, and continuous learning through a six-stage lifecycle is proposed, delivering a practical control-to-outcome model and a staged implementation roadmap for enterprises pursuing sec...

Munir Ahmed Mohammed · 0 citations
Open access Aug 2026

Optimizing Cybersecurity and Risk Management for Intrusion Mitigation in IoT Applications

This study presents a C*-algebraic framework for optimizing intrusion mitigation in Internet of Things (IoT)networks by integrating mathematical models for cyberattack propagation with optimization-based security strategies.Theoretical results demonstrate that the spectral radius of the attack operator ρ(A) governs the...

Mustapha Danjuma Suleiman · 0 citations
Review Open access Aug 2026

Security Vulnerabilities and Resilience Strategies in Healthcare IoT Systems: A Comprehensive Review

A thorough study of 41 peer-reviewed research papers from January 2018 through May 2025 revealed the current state of security vulnerabilities and resilience strategies in healthcare IoT systems and provides a comprehensive analysis of security threats at the device, network, and application levels.

M. R. M. Hanan, M. J. A. Sabani · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.