The digital age characterizes the 21-century by the widespread and conscious use of Information Technology, originating the need for organizations to protect one of the most critical and valuable resources: information. Cyber security was born to protect information systems from cyber-attacks. Organizational resilience refers to the ability of a system to adapt to a change: a very contemporary concept that is finding more and more importance in our continuously changing society, assuming also a greater relevance in the cyber context. Therefore, the ability of organizations to react to cyber-attacks and to evolve to a new robustness after successful outbreaks recalls the concept of resilience and brings to the evolution of this concept into that of cyber resilience. In order to offer a deep insight on the management of cyber resilient systems and to propose a Managerial Cyber Resilience Framework, clarifying the role of context in the correct selection and implementation of different tools and practices, we conducted an exploratory multiple case study analysis in six companies operating in three different industries: consultancy, public administration and banking. The results provide interesting managerial actions to undertake for the management of cyber resilient systems also in consideration of specific contextual factors.

Understanding the management of cyber resilient systems / Annarelli, A.; Nonino, F.; Palombi, G.. - In: COMPUTERS & INDUSTRIAL ENGINEERING. - ISSN 0360-8352. - 149:(2020). [10.1016/j.cie.2020.106829]

Understanding the management of cyber resilient systems

Annarelli A.;Nonino F.;Palombi G.
2020

Abstract

The digital age characterizes the 21-century by the widespread and conscious use of Information Technology, originating the need for organizations to protect one of the most critical and valuable resources: information. Cyber security was born to protect information systems from cyber-attacks. Organizational resilience refers to the ability of a system to adapt to a change: a very contemporary concept that is finding more and more importance in our continuously changing society, assuming also a greater relevance in the cyber context. Therefore, the ability of organizations to react to cyber-attacks and to evolve to a new robustness after successful outbreaks recalls the concept of resilience and brings to the evolution of this concept into that of cyber resilience. In order to offer a deep insight on the management of cyber resilient systems and to propose a Managerial Cyber Resilience Framework, clarifying the role of context in the correct selection and implementation of different tools and practices, we conducted an exploratory multiple case study analysis in six companies operating in three different industries: consultancy, public administration and banking. The results provide interesting managerial actions to undertake for the management of cyber resilient systems also in consideration of specific contextual factors.
2020
cyber resilience framework; cyber resilient systems; cyber security; multiple case study; resilience
01 Pubblicazione su rivista::01a Articolo in rivista
Understanding the management of cyber resilient systems / Annarelli, A.; Nonino, F.; Palombi, G.. - In: COMPUTERS & INDUSTRIAL ENGINEERING. - ISSN 0360-8352. - 149:(2020). [10.1016/j.cie.2020.106829]
File allegati a questo prodotto
File Dimensione Formato  
Annarelli_Cyber-resilient_2020.pdf

solo gestori archivio

Tipologia: Versione editoriale (versione pubblicata con il layout dell'editore)
Licenza: Tutti i diritti riservati (All rights reserved)
Dimensione 2.33 MB
Formato Adobe PDF
2.33 MB Adobe PDF   Contatta l'autore

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11573/1440625
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 33
  • ???jsp.display-item.citation.isi??? 24
social impact