Aug 2026· Journal of Computer Science and Information Technology· 0 citations· 14 references
TL;DR
A multi-level cybersecurity and privacy framework that integrates complementary controls across physical, network, endpoint, application, data, identity and access management, monitoring and incident response, and human and policy domains is developed.
Abstract
The increasing complexity of cyber threats, interconnected technologies, and data-intensive digital services has exposed limitations in security strategies that depend on isolated controls. This study develops a multi-level cybersecurity and privacy framework that integrates complementary controls across physical, network, endpoint, application, data, identity and access management, monitoring and incident response, and human and policy domains. The framework was developed through structured synthesis of the ten cybersecurity and privacy studies reviewed in the source manuscript and alignment with established cybersecurity guidance. The revised model treats monitoring and incident response as a cross-cutting capability and privacy and governance as cross-cutting concerns. It further introduces a measurable evaluation structure based on layer-specific security indicators and an overall Multi-Level Cybersecurity Resilience Index. The framework is mapped to NIST Cybersecurity Framework 2.0, ISO/IEC 27001:2022, and Zero Trust principles. The resulting architecture provides a practical basis for coordinating preventive, detective, responsive, recovery, governance, and privacy controls. Because the source studies did not include primary empirical testing, the present manuscript does not claim empirical effectiveness; instead, it specifies a validation protocol using expert assessment and/or controlled simulation. This study contributes an integrated architectural model and a measurable evaluation approach for organizations seeking adaptive and resilient cybersecurity.
The results indicate that a NIST-based approach can assist organizations in identifying and prioritizing cybersecurity risks, strengthening data protection mechanisms, enhancing incident readiness, and optimizing continuous security monitoring.
M. B. Legowo, Budi Indiarto, Adzrani Haura Badzlinaya Novianto et al.· International Journal of Inn...· 0 citations
The study concludes that universities require a layered, integrated governance model rather than separate compliance silos, and recommends multidisciplinary oversight, harmonised control catalogues, precise data classification, Zero Trust access, privacy and security by design, recurring impact assessments, supplier accountability, and measurable assurance.
Dominic Feboh, Ayokunle Olamide Ijagbemi, Stanley Nwakamma et al.· International Journal of Mul...· 0 citations
The digital transformation of Critical Information Infrastructure (CII) and Industrial Control Systems (ICS) through Industry 4.0 technologies introduces significant cybersecurity challenges. While existing research examines technologies individually, little attention has been given to how their combined adoption reshapes the overall threat landscape. This study presents a Multivocal Literature Review, synthesising evidence from 41 academic and industry sources (January 2010–June 2026) and proposes an Integrated Cyber Risk Pathway Model that traces how technology adoption introduces interconnected vulnerabilities, expands threat actor capabilities, produces cyber-physical impacts, and ultimately defines resilience requirements. Three findings emerge: 1) emerging technologies play a dual role, enhancing operational capability while expanding the attack surface; 2) cyber-attacks have evolved from specialist ICS operations to ecosystem-level compromises exploiting supply chains and shared platforms; 3) the resulting vulnerabilities are systemically interconnected, creating risks that prevention-focused cybersecurity alone cannot fully address. The study argues that protecting modern critical infrastructure requires a shift to resilience-centred strategies supported by governance, secure system design and cross-sector collaboration.
Jennita Rao Appanah Appayya, S. Armoogum, Kaleem Usmani· International Journal of Adv...· 0 citations
A Security-by-Design and risk-based certification framework that combines a six-layer IoT-AI reference architecture with STRIDE-based threat analysis augmented to capture AI-specific threats, including prompt injection and data poisoning is proposed.
Iván Ortiz-Garcés, Roberto O. Andrade· Future Internet· 0 citations
A Saudi Enterprise Cloud Cyber-Resilience Framework which integrates compliance alignment, architectural controls, operational preparedness, and continuous learning through a six-stage lifecycle is proposed, delivering a practical control-to-outcome model and a staged implementation roadmap for enterprises pursuing secure cloud transformation while assuring compliance, service availability, and organizational confidence.
Munir Ahmed Mohammed· Global academic journal of e...· 0 citations
Smart ports increasingly rely on secure, interoperable, and scalable digital infrastructures to manage complex flows of cargo, vehicles, people, and information. Access management has therefore evolved from an operational security function into a strategic component of governance, cybersecurity, regulatory compliance, and logistics efficiency. This study proposes a cloud-enabled access management framework for smart port ecosystems. It adopts an exploratory, design-oriented methodology combining a Scopus-based literature review, benchmarking of 22 cloud-based access control systems, consultations with nine stakeholders, and value proposition analysis. The findings identify key technological, organizational, and regulatory requirements, including modular integration, multi-factor authentication, role-and zone-based access controls, interoperability with existing port systems, auditability, and compliance with data protection and information security standards. Stakeholder consultations further reveal recurring challenges, such as biometric reliability, entry delays, fragmented access control, high staff turnover, and continued reliance on manual procedures. The proposed framework links these challenges to value-creating mechanisms, including automated scheduling, remote management, API integration, alternative authentication methods, real-time monitoring, and non-compliance management. The study contributes to smart port research by conceptualizing cloud-enabled access management as both a governance and business model innovation capable of strengthening security, operational efficiency, and resilience across port ecosystems.
Unknown authors· COLLECTION OF PAPERS NEW ECO...· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.