[HTML][HTML] Learning from cyber security incidents: A systematic review and future research agenda

CM Patterson, JRC Nurse, VNL Franqueira - Computers & Security, 2023 - Elsevier
Cyber security incidents are now prevalent in many organisations. Arguably, those who can
learn from security incidents and address the underlying causes will reduce the prevalence …

Information security incident management: Current practice as reported in the literature

IA Tøndel, MB Line, MG Jaatun - Computers & Security, 2014 - Elsevier
This paper reports results of a systematic literature review on current practice and
experiences with incident management, covering a wide variety of organisations. Identified …

How can organizations develop situation awareness for incident response: A case study of management practice

A Ahmad, SB Maynard, KC Desouza, J Kotsias… - Computers & …, 2021 - Elsevier
Organized, sophisticated and persistent cyber-threat-actors pose a significant challenge to
large, high-value organizations. They are capable of disrupting and destroying cyber …

How integration of cyber security management and incident response enables organizational learning

A Ahmad, KC Desouza, SB Maynard… - Journal of the …, 2020 - Wiley Online Library
Digital assets of organizations are under constant threat from a wide assortment of nefarious
actors. When threats materialize, the consequences can be significant. Most large …

Lessons lost: Incident response in the age of cyber insurance and breach attorneys

DW Woods, R Böhme, J Wolff, D Schwarcz - 32nd USENIX Security …, 2023 - usenix.org
Incident Response (IR) allows victim firms to detect, contain, and recover from security
incidents. It should also help the wider community avoid similar attacks in the future. In …

Agile incident response (AIR): Improving the incident response process in healthcare

Y He, ED Zamani, S Lloyd, C Luo - International Journal of Information …, 2022 - Elsevier
Recent industrial reports show an increased number of cybersecurity incidents, which inflict
significant financial losses. Although organisations have been increasing their investments …

A cyber incident response and recovery framework to support operators of industrial control systems

A Staves, T Anderson, H Balderstone, B Green… - International Journal of …, 2022 - Elsevier
Over the last decade, we have seen a shift in the focus of cyber attacks, moving from
traditional IT systems to include more specialised Industrial Control Systems (ICS), often …

Cyber security challenges in Smart Grids

MB Line, IA Tøndel, MG Jaatun - 2011 2nd IEEE PES …, 2011 - ieeexplore.ieee.org
The introduction of telecommunication in the energy grid, leading the way towards Smart
Grids, challenges the way safe operations have traditionally been assured in the energy …

Organizational governance, social bonds and information security policy compliance: A perspective towards oil and gas employees

RF Ali, PDD Dominic, K Ali - Sustainability, 2020 - mdpi.com
Information security attacks on oil and gas (O&G) organizations have increased since the
last decade. From 2015 to 2019, almost 70 percent of O&G organizations faced at least one …

[HTML][HTML] “I don't think we're there yet”: The practices and challenges of organisational learning from cyber security incidents

CM Patterson, JRC Nurse, VNL Franqueira - Computers & Security, 2024 - Elsevier
Learning from cyber incidents is crucial for organisations to enhance their cyber resilience
and effectively respond to evolving threats. This study employs neo-institutional and …