To read this content please select one of the options below:

Cyber Incident Response Managerial Approaches for Enhancing Small–Medium-Size Enterprise's Cyber Maturity

Ieva Auzina (Atea Global Services Ltd., Latvia)
Tatjana Volkova (School of Business and Finance, Latvia)
Diego Norena-Chavez (Escuela de Posgrado, Universidad de Lima, Peru)
Marta Kadłubek (Czestochowa University of Technology, Poland)
Eleftherios Thalassinos (University of Piraeus, Greece ; University of Malta, Malta)

Digital Transformation, Strategic Resilience, Cyber Security and Risk Management

ISBN: 978-1-80455-254-4, eISBN: 978-1-80455-253-7

Publication date: 28 September 2023

Abstract

There is a research gap in the explanation of cyber incident response approaches in management to increase cyber maturity for small–medium-size enterprises (SMEs). Therefore, based on the literature analysis, the chapter aims to (1) provide cyber incident response characteristics, (2) show the importance for SMEs, (3) identify cyber incident response feasibility and causal factors, (4) provide scenarios for consideration to create an incident response plan (IRP), and (5) discuss the cyber incident response and managerial approaches in SMEs. The authors used content analysis of scientific and professional articles to develop the theoretical foundation of incident response approaches in management for SMEs. The authors start from the fundamentals to obtain knowledge and understanding of the latest threats and opportunities, and how to defend themselves using the limited capacity of resources might be the starting point to building an extensive incident response capability. Incident response capabilities and maturity levels vary widely between various organisations. There is no simple one-size-fits-all process for incident response; each case is unique and requires continuous refinement. Differentiation and adaptation to different types of SMEs are pivotal to developing cyber maturity and defining requirements that fit the market’s needs and are therefore more efficient in achieving the goal of increasing cyber security (CS) among business management. SMEs may not have a mature IRP, but at least one readiness indicator could lead to the preparation of a mature IRP. Implementation of the secure undertakings and information processes requires using modern information and communication technologies, incident response processes, and other modules that could enhance support for decision-making processes in management. The approach requires a systematic approach to issues related to constructing these solutions. The authors highlight that building efficient incident response approaches in management to improve cyber maturity will begin with infrastructure and people factors.

Keywords

Citation

Auzina, I., Volkova, T., Norena-Chavez, D., Kadłubek, M. and Thalassinos, E. (2023), "Cyber Incident Response Managerial Approaches for Enhancing Small–Medium-Size Enterprise's Cyber Maturity", Grima, S., Thalassinos, E., Cristea, M., Kadłubek, M., Maditinos, D. and Peiseniece, L. (Ed.) Digital Transformation, Strategic Resilience, Cyber Security and Risk Management (Contemporary Studies in Economic and Financial Analysis, Vol. 111A), Emerald Publishing Limited, Leeds, pp. 175-190. https://doi.org/10.1108/S1569-37592023000111A012

Publisher

:

Emerald Publishing Limited

Copyright © 2023 Ieva Auzina, Tatjana Volkova, Diego Norena-Chavez, Marta Kadłubek and Eleftherios Thalassinos