Critical Success Factor for Integration of Cyber Security in Context of Managed Services
Georg Sven Lampe, Marieta Olaru, Teodora Elena Fogoroş, Stephan Massner · Proceeding Papers · 2022
The increasing frequency of cyber security attacks and their impact on value-added business processes requires companies to appropriately address cyber security risks in the Risk Management Process (RMP).In the context of cybersecurity risks, companies can identify, assess and manage their business aims by applying 4C (Consultation, Communication, Coordination, Cooperation).With this paper an increase in the efficiency of the RMP is proposed through an adaptation of the management activities by means of categorization of the information and group consolidation as well as the prioritization of measures.Trough adaptation it possible to establish a Cyber Security RMP (CS-RPM).The result is a predicted balancing of the benefits of the technology with the potential consequences of a CS risk threat event that drives proactive CS risk management.A system of guidelines for an information security-, cyber security-and data privacy-specific document structure of the managed services (MS) is also considered and be looked.The use of risk registers to map CS risks and the application of risk metrics is considered in more detail.Risk values to be quantified and their determination from risk measurements are explained in parts.