Towards a Cybersecurity Governance Maturity Model for Critical Infrastructures in Developing Countries
摘要
Without critical infrastructures such as electricity, drinking water or health services, society as we know it will come to a standstill. Infrastructure protection in developing countries is a serious challenge. The cybersecurity threat to critical infrastructures in developing countries is far greater than for developed countries and cybersecurity challenges in developing countries are often beyond the scope of the people managing such facilities. An explorative literature review indicated that although there are norms and standards for critical infrastructures in developing countries very little research has been done on the cybersecurity governance aspect of critical infrastructures. Similarly, there is limited research on maturity models to evaluate the maturity of cybersecurity governance of critical infrastructures in developing countries. The development of a functional cybersecurity governance maturity model will capacitate role players responsible for the safeguarding of critical infrastructure systems in developing countries. The purpose of the article is to present research aimed at creating a Critical Infrastructure Cyber Governance Maturity Model (CICGM2) focused on the cybersecurity governance of critical infrastructure systems in developing countries. The outcome of the CICGM2 will contain a tailor-made cybersecurity governance assessment tool to improve the management of critical infrastructures in developing countries. The CICGM2 will be developed by integrating recognized cybersecurity governance frameworks with established cybersecurity maturity models.