Threat modeling: a study on its application in digital transformation from the perspective of risk

Bibliographic Details
Main Author: Junior , Abinel Santiago Cerqueira
Publication Date: 2023
Other Authors: Arima, Carlos Hideo
Format: Article
Language: eng
Source: GeSec
Download full: https://ojs.revistagesec.org.br/secretariado/article/view/1581
Summary: Information security is a topic that has been increasingly discussed nowadays after the beginning of the pandemic and its understanding has been fundamental to protect information in several organizations. The present study aims to identify and analyze the application of threat modeling in digital transformation from the perspective of information security risks. For the development of the research, a systematic review of the literature was conducted with the adoption of a protocol based on PRISMA-P to identify which threat modeling techniques have been applied in digital transformation and which information security risk approaches are used in the application of the threat modeling. The result of this study suggests that threat modeling applied in digital transformation uses customized models by means of unspecified techniques and that qualitative risk approaches have been adopted more frequently in digital transformation.
id SINSESP_190d84dbdd64721994ef1f8730d73831
oai_identifier_str oai:ojs2.revistagesec.org.br:article/1581
network_acronym_str SINSESP
network_name_str GeSec
repository_id_str
spelling Threat modeling: a study on its application in digital transformation from the perspective of riskInformation SecurityThreat ModelingDigital TransformationRisk ManagementCyber RiskInformation security is a topic that has been increasingly discussed nowadays after the beginning of the pandemic and its understanding has been fundamental to protect information in several organizations. The present study aims to identify and analyze the application of threat modeling in digital transformation from the perspective of information security risks. For the development of the research, a systematic review of the literature was conducted with the adoption of a protocol based on PRISMA-P to identify which threat modeling techniques have been applied in digital transformation and which information security risk approaches are used in the application of the threat modeling. The result of this study suggests that threat modeling applied in digital transformation uses customized models by means of unspecified techniques and that qualitative risk approaches have been adopted more frequently in digital transformation.Revista de Gestão e Secretariado2023-01-24info:eu-repo/semantics/articleinfo:eu-repo/semantics/publishedVersionapplication/pdfhttps://ojs.revistagesec.org.br/secretariado/article/view/158110.7769/gesec.v14i1.1581Revista de Gestão e Secretariado (Management and Administrative Professional Review); Vol. 14 No. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169Revista de Gestão e Secretariado; Vol. 14 Núm. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169Revista de Gestão e Secretariado; v. 14 n. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-11692178-9010reponame:GeSecinstname:Sindicato das Secretárias do Estado de São Paulo (SINSESP)instacron:SINSESPenghttps://ojs.revistagesec.org.br/secretariado/article/view/1581/779Junior , Abinel Santiago CerqueiraArima, Carlos Hideoinfo:eu-repo/semantics/openAccess2023-01-25T09:34:26Zoai:ojs2.revistagesec.org.br:article/1581Revistahttps://www.revistagesec.org.br/ONGhttps://ojs.revistagesec.org.br/secretariado/oaieditor@revistagesec.org.br | gestoreditorial@revistagesec.org.br | rf.sabino@gmail.com2178-90102178-9010opendoar:2023-01-25T09:34:26GeSec - Sindicato das Secretárias do Estado de São Paulo (SINSESP)false
dc.title.none.fl_str_mv Threat modeling: a study on its application in digital transformation from the perspective of risk
title Threat modeling: a study on its application in digital transformation from the perspective of risk
spellingShingle Threat modeling: a study on its application in digital transformation from the perspective of risk
Junior , Abinel Santiago Cerqueira
Information Security
Threat Modeling
Digital Transformation
Risk Management
Cyber Risk
title_short Threat modeling: a study on its application in digital transformation from the perspective of risk
title_full Threat modeling: a study on its application in digital transformation from the perspective of risk
title_fullStr Threat modeling: a study on its application in digital transformation from the perspective of risk
title_full_unstemmed Threat modeling: a study on its application in digital transformation from the perspective of risk
title_sort Threat modeling: a study on its application in digital transformation from the perspective of risk
author Junior , Abinel Santiago Cerqueira
author_facet Junior , Abinel Santiago Cerqueira
Arima, Carlos Hideo
author_role author
author2 Arima, Carlos Hideo
author2_role author
dc.contributor.author.fl_str_mv Junior , Abinel Santiago Cerqueira
Arima, Carlos Hideo
dc.subject.por.fl_str_mv Information Security
Threat Modeling
Digital Transformation
Risk Management
Cyber Risk
topic Information Security
Threat Modeling
Digital Transformation
Risk Management
Cyber Risk
description Information security is a topic that has been increasingly discussed nowadays after the beginning of the pandemic and its understanding has been fundamental to protect information in several organizations. The present study aims to identify and analyze the application of threat modeling in digital transformation from the perspective of information security risks. For the development of the research, a systematic review of the literature was conducted with the adoption of a protocol based on PRISMA-P to identify which threat modeling techniques have been applied in digital transformation and which information security risk approaches are used in the application of the threat modeling. The result of this study suggests that threat modeling applied in digital transformation uses customized models by means of unspecified techniques and that qualitative risk approaches have been adopted more frequently in digital transformation.
publishDate 2023
dc.date.none.fl_str_mv 2023-01-24
dc.type.driver.fl_str_mv info:eu-repo/semantics/article
info:eu-repo/semantics/publishedVersion
format article
status_str publishedVersion
dc.identifier.uri.fl_str_mv https://ojs.revistagesec.org.br/secretariado/article/view/1581
10.7769/gesec.v14i1.1581
url https://ojs.revistagesec.org.br/secretariado/article/view/1581
identifier_str_mv 10.7769/gesec.v14i1.1581
dc.language.iso.fl_str_mv eng
language eng
dc.relation.none.fl_str_mv https://ojs.revistagesec.org.br/secretariado/article/view/1581/779
dc.rights.driver.fl_str_mv info:eu-repo/semantics/openAccess
eu_rights_str_mv openAccess
dc.format.none.fl_str_mv application/pdf
dc.publisher.none.fl_str_mv Revista de Gestão e Secretariado
publisher.none.fl_str_mv Revista de Gestão e Secretariado
dc.source.none.fl_str_mv Revista de Gestão e Secretariado (Management and Administrative Professional Review); Vol. 14 No. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169
Revista de Gestão e Secretariado; Vol. 14 Núm. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169
Revista de Gestão e Secretariado; v. 14 n. 1 (2023): Revista de Gestão e Secretariado v.14, n.1, 2023; 1158-1169
2178-9010
reponame:GeSec
instname:Sindicato das Secretárias do Estado de São Paulo (SINSESP)
instacron:SINSESP
instname_str Sindicato das Secretárias do Estado de São Paulo (SINSESP)
instacron_str SINSESP
institution SINSESP
reponame_str GeSec
collection GeSec
repository.name.fl_str_mv GeSec - Sindicato das Secretárias do Estado de São Paulo (SINSESP)
repository.mail.fl_str_mv editor@revistagesec.org.br | gestoreditorial@revistagesec.org.br | rf.sabino@gmail.com
_version_ 1838625558461677568