• English
    • español
  • English 
    • English
    • español
  • Login
View Item 
  •   Home
  • Artículos científicos
  • Pregrado
  • Facultad de Ingeniería
  • Ingeniería de Sistemas de Información
  • View Item
  •   Home
  • Artículos científicos
  • Pregrado
  • Facultad de Ingeniería
  • Ingeniería de Sistemas de Información
  • View Item
JavaScript is disabled for your browser. Some features of this site may not work without it.

Browse

All of UPCCommunitiesTitleAuthorsAdvisorIssue DateSubmit DateSubjectsThis CollectionTitleAuthorsAdvisorIssue DateSubmit DateSubjectsProfilesView

My Account

LoginRegister

Quick Guides

AcercaPolíticasPlantillas de tesis y trabajos de investigaciónFormato de publicación de tesis y trabajos de investigaciónFormato de publicación de otros documentosLista de verificación

Statistics

Display statistics

Cybersecurity framework for SMEs in Peru based on ISO/IEC 27001 and CSF NIST controls

  • CSV
  • RefMan
  • EndNote
  • BibTex
  • RefWorks
Average rating
 
   votes
Cast your vote
You can rate an item by clicking the amount of stars they wish to award to this item. When enough users have cast their vote on this item, the average rating will also be shown.
Star rating
 
Your vote was cast
Thank you for your feedback
Authors
Angelo Edu, Munoz Luyo
Alexis, Garibay Palomino
Lenis, Wong Portillo
Issue Date
2023-01-01
Keywords
CFS NIST
controls
cyber-attacks
Cybersecurity
Framework
ISO/IEC 27001
SMEs

Metadata
Show full item record
Publisher
IEEE Computer Society
Journal
Iberian Conference on Information Systems and Technologies, CISTI
URI
http://hdl.handle.net/10757/669501
DOI
10.23919/CISTI58278.2023.10211874
Abstract
Due to the global pandemic that was experienced in 2020, the Small and Medium Enterprises (SMEs) sector in Peru chose to store all their information in cloud services. However, a 2021 Kaspersky study indicates that SMBs have few resources to implement security solutions to protect their information. For this reason, this article proposes a cybersecurity framework composed of controls from ISO/IEC 27001 and the Cybersecurity Framework (CSF) of the National Institute of Standards and Technology (NIST) to mitigate cyber-threats against SMEs in Peru. The framework consists of 7 steps having as reference the Deming cycle (PDCA). For the implementation of the composite framework, we worked with 12 domains and 40 controls for a Peruvian SME in the technology sector. The results showed an increase in cybersecurity of 40 %, after applying the 40 controls, improving its level of maturity from the 'insufficient' state to a 'mature' state, according to the assessment given.
Type
info:eu-repo/semantics/article
Rights
info:eu-repo/semantics/embargoedAccess
Language
eng
ISSN
21660727
EISSN
21660735
ae974a485f413a2113503eed53cd6c53
10.23919/CISTI58278.2023.10211874
Scopus Count
Collections
Ingeniería de Sistemas de Información

entitlement

 

DSpace software (copyright © 2002 - 2025)  DuraSpace
Quick Guide | Contact Us
Alicia
La Referencia
Open Repository is a service operated by 
Atmire NV
 

Export search results

The export option will allow you to export the current search results of the entered query to a file. Different formats are available for download. To export the items, click on the button corresponding with the preferred download format.

By default, clicking on the export buttons will result in a download of the allowed maximum amount of items.

To select a subset of the search results, click "Selective Export" button and make a selection of the items you want to export. The amount of items that can be exported at once is similarly restricted as the full export.

After making a selection, click one of the export format buttons. The amount of items that will be exported is indicated in the bubble next to export format.