Threat modeling: a study on its application in digital transformation from the perspective of risk
Main Author: | |
---|---|
Publication Date: | 2023 |
Other Authors: | |
Format: | Article |
Language: | eng |
Source: | GeSec |
Download full: | https://ojs.revistagesec.org.br/secretariado/article/view/1581 |
Summary: | Information security is a topic that has been increasingly discussed nowadays after the beginning of the pandemic and its understanding has been fundamental to protect information in several organizations. The present study aims to identify and analyze the application of threat modeling in digital transformation from the perspective of information security risks. For the development of the research, a systematic review of the literature was conducted with the adoption of a protocol based on PRISMA-P to identify which threat modeling techniques have been applied in digital transformation and which information security risk approaches are used in the application of the threat modeling. The result of this study suggests that threat modeling applied in digital transformation uses customized models by means of unspecified techniques and that qualitative risk approaches have been adopted more frequently in digital transformation. |
id |
SINSESP_190d84dbdd64721994ef1f8730d73831 |
---|---|
oai_identifier_str |
oai:ojs2.revistagesec.org.br:article/1581 |
network_acronym_str |
SINSESP |
network_name_str |
GeSec |
repository_id_str |
|
spelling |
Threat modeling: a study on its application in digital transformation from the perspective of riskInformation SecurityThreat ModelingDigital TransformationRisk ManagementCyber RiskInformation security is a topic that has been increasingly discussed nowadays after the beginning of the pandemic and its understanding has been fundamental to protect information in several organizations. The present study aims to identify and analyze the application of threat modeling in digital transformation from the perspective of information security risks. For the development of the research, a systematic review of the literature was conducted with the adoption of a protocol based on PRISMA-P to identify which threat modeling techniques have been applied in digital transformation and which information security risk approaches are used in the application of the threat modeling. The result of this study suggests that threat modeling applied in digital transformation uses customized models by means of unspecified techniques and that qualitative risk approaches have been adopted more frequently in digital transformation.Revista de Gestão e Secretariado2023-01-24info:eu-repo/semantics/articleinfo:eu-repo/semantics/publishedVersionapplication/pdfhttps://ojs.revistagesec.org.br/secretariado/article/view/158110.7769/gesec.v14i1.1581Revista de Gestão e Secretariado (Management and Administrative Professional Review); Vol. 14 No. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169Revista de Gestão e Secretariado; Vol. 14 Núm. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169Revista de Gestão e Secretariado; v. 14 n. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-11692178-9010reponame:GeSecinstname:Sindicato das Secretárias do Estado de São Paulo (SINSESP)instacron:SINSESPenghttps://ojs.revistagesec.org.br/secretariado/article/view/1581/779Junior , Abinel Santiago CerqueiraArima, Carlos Hideoinfo:eu-repo/semantics/openAccess2023-01-25T09:34:26Zoai:ojs2.revistagesec.org.br:article/1581Revistahttps://www.revistagesec.org.br/ONGhttps://ojs.revistagesec.org.br/secretariado/oaieditor@revistagesec.org.br | gestoreditorial@revistagesec.org.br | rf.sabino@gmail.com2178-90102178-9010opendoar:2023-01-25T09:34:26GeSec - Sindicato das Secretárias do Estado de São Paulo (SINSESP)false |
dc.title.none.fl_str_mv |
Threat modeling: a study on its application in digital transformation from the perspective of risk |
title |
Threat modeling: a study on its application in digital transformation from the perspective of risk |
spellingShingle |
Threat modeling: a study on its application in digital transformation from the perspective of risk Junior , Abinel Santiago Cerqueira Information Security Threat Modeling Digital Transformation Risk Management Cyber Risk |
title_short |
Threat modeling: a study on its application in digital transformation from the perspective of risk |
title_full |
Threat modeling: a study on its application in digital transformation from the perspective of risk |
title_fullStr |
Threat modeling: a study on its application in digital transformation from the perspective of risk |
title_full_unstemmed |
Threat modeling: a study on its application in digital transformation from the perspective of risk |
title_sort |
Threat modeling: a study on its application in digital transformation from the perspective of risk |
author |
Junior , Abinel Santiago Cerqueira |
author_facet |
Junior , Abinel Santiago Cerqueira Arima, Carlos Hideo |
author_role |
author |
author2 |
Arima, Carlos Hideo |
author2_role |
author |
dc.contributor.author.fl_str_mv |
Junior , Abinel Santiago Cerqueira Arima, Carlos Hideo |
dc.subject.por.fl_str_mv |
Information Security Threat Modeling Digital Transformation Risk Management Cyber Risk |
topic |
Information Security Threat Modeling Digital Transformation Risk Management Cyber Risk |
description |
Information security is a topic that has been increasingly discussed nowadays after the beginning of the pandemic and its understanding has been fundamental to protect information in several organizations. The present study aims to identify and analyze the application of threat modeling in digital transformation from the perspective of information security risks. For the development of the research, a systematic review of the literature was conducted with the adoption of a protocol based on PRISMA-P to identify which threat modeling techniques have been applied in digital transformation and which information security risk approaches are used in the application of the threat modeling. The result of this study suggests that threat modeling applied in digital transformation uses customized models by means of unspecified techniques and that qualitative risk approaches have been adopted more frequently in digital transformation. |
publishDate |
2023 |
dc.date.none.fl_str_mv |
2023-01-24 |
dc.type.driver.fl_str_mv |
info:eu-repo/semantics/article info:eu-repo/semantics/publishedVersion |
format |
article |
status_str |
publishedVersion |
dc.identifier.uri.fl_str_mv |
https://ojs.revistagesec.org.br/secretariado/article/view/1581 10.7769/gesec.v14i1.1581 |
url |
https://ojs.revistagesec.org.br/secretariado/article/view/1581 |
identifier_str_mv |
10.7769/gesec.v14i1.1581 |
dc.language.iso.fl_str_mv |
eng |
language |
eng |
dc.relation.none.fl_str_mv |
https://ojs.revistagesec.org.br/secretariado/article/view/1581/779 |
dc.rights.driver.fl_str_mv |
info:eu-repo/semantics/openAccess |
eu_rights_str_mv |
openAccess |
dc.format.none.fl_str_mv |
application/pdf |
dc.publisher.none.fl_str_mv |
Revista de Gestão e Secretariado |
publisher.none.fl_str_mv |
Revista de Gestão e Secretariado |
dc.source.none.fl_str_mv |
Revista de Gestão e Secretariado (Management and Administrative Professional Review); Vol. 14 No. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169 Revista de Gestão e Secretariado; Vol. 14 Núm. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169 Revista de Gestão e Secretariado; v. 14 n. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169 2178-9010 reponame:GeSec instname:Sindicato das Secretárias do Estado de São Paulo (SINSESP) instacron:SINSESP |
instname_str |
Sindicato das Secretárias do Estado de São Paulo (SINSESP) |
instacron_str |
SINSESP |
institution |
SINSESP |
reponame_str |
GeSec |
collection |
GeSec |
repository.name.fl_str_mv |
GeSec - Sindicato das Secretárias do Estado de São Paulo (SINSESP) |
repository.mail.fl_str_mv |
editor@revistagesec.org.br | gestoreditorial@revistagesec.org.br | rf.sabino@gmail.com |
_version_ |
1838625558461677568 |