Javascript must be enabled to continue!
Strengthening cyber resilience in financial institutions: A strategic approach to threat mitigation and risk management
View through CrossRef
In cyber threats, financial institutions have experienced more complex cyber risks that would threaten the integrity of their systems, customer information, and financial position in general. Due to the current technological trends within the financial sector, this vulnerability threats’ exposure has grown and is prone to threats such as advanced persistent threats, ransom ware, and social engineering attacks. This review aims at assessing the effectiveness of cyber threat management strategies adopted in the financial institutions and determining the best strategies that can be implemented to improve the current security condition in the industry. This research design used quantitative approach on actual statistical data of cyber incidents from the financial regulators’ databases and informed by qualitative data using semi-structured interviews of cybersecurity managers in financial institutions. Threat intelligence reports, regulatory compliances as well as various benchmarking surveys and reports form the major data sources employed in the research. Independent variables are cybersecurity investments, governance frameworks, and technology deployment strategies, and dependent variables are management of incidents, recovery time objectives, and key resilience outcomes based on the international standard and frameworks. The results indicate that institutions with holistic cyber threat prevention policies have 64% lesser average security breach rate and 2.3 times faster rate of mean time to recovery from security breaches than a traditional cyber security based on a defensive architecture. Financial organizations that had implemented IRM had less disruption of business operations in the cyber-attack scenarios. Additionally, institutions investing in threat intelligence capabilities identified potential threats 47% earlier than those relying solely on perimeter defenses. This study also identified that institutions of greater size were more advanced in the capabilities but on the other hand the small institutions were much quicker in their responses. It is now possible to better advocate not only single focused strategies aimed solely at prevention, but on comprehensive preparedness approaches that bring together considerations concerning prevention, detection, response, as well as recovery capacities. The results imply the call for policy measures that ensure that there are balanced cyber security readiness for the various types of the financial institutions. It suggests protective management of security as a risk factor, adoption of intelligence-led security strategies, and the development of common information-sharing platforms in financial institutions for improved security protection. This review concludes that achieving cyber resilience in the financial institutions is significant when technology control is complemented by organizational controls and people control. It is recommended that the regulatory bodies should endorse progressive security structures since threats are likely to advance over time, and the sectors should foster collaboration and sharing of valuable information. The existing security strategies need to be profoundly changed in financial institutions to focus more on timely detection of threats and ensuring ability to promptly react to them with due adaptations to threats in the future.
Title: Strengthening cyber resilience in financial institutions: A strategic approach to threat mitigation and risk management
Description:
In cyber threats, financial institutions have experienced more complex cyber risks that would threaten the integrity of their systems, customer information, and financial position in general.
Due to the current technological trends within the financial sector, this vulnerability threats’ exposure has grown and is prone to threats such as advanced persistent threats, ransom ware, and social engineering attacks.
This review aims at assessing the effectiveness of cyber threat management strategies adopted in the financial institutions and determining the best strategies that can be implemented to improve the current security condition in the industry.
This research design used quantitative approach on actual statistical data of cyber incidents from the financial regulators’ databases and informed by qualitative data using semi-structured interviews of cybersecurity managers in financial institutions.
Threat intelligence reports, regulatory compliances as well as various benchmarking surveys and reports form the major data sources employed in the research.
Independent variables are cybersecurity investments, governance frameworks, and technology deployment strategies, and dependent variables are management of incidents, recovery time objectives, and key resilience outcomes based on the international standard and frameworks.
The results indicate that institutions with holistic cyber threat prevention policies have 64% lesser average security breach rate and 2.
3 times faster rate of mean time to recovery from security breaches than a traditional cyber security based on a defensive architecture.
Financial organizations that had implemented IRM had less disruption of business operations in the cyber-attack scenarios.
Additionally, institutions investing in threat intelligence capabilities identified potential threats 47% earlier than those relying solely on perimeter defenses.
This study also identified that institutions of greater size were more advanced in the capabilities but on the other hand the small institutions were much quicker in their responses.
It is now possible to better advocate not only single focused strategies aimed solely at prevention, but on comprehensive preparedness approaches that bring together considerations concerning prevention, detection, response, as well as recovery capacities.
The results imply the call for policy measures that ensure that there are balanced cyber security readiness for the various types of the financial institutions.
It suggests protective management of security as a risk factor, adoption of intelligence-led security strategies, and the development of common information-sharing platforms in financial institutions for improved security protection.
This review concludes that achieving cyber resilience in the financial institutions is significant when technology control is complemented by organizational controls and people control.
It is recommended that the regulatory bodies should endorse progressive security structures since threats are likely to advance over time, and the sectors should foster collaboration and sharing of valuable information.
The existing security strategies need to be profoundly changed in financial institutions to focus more on timely detection of threats and ensuring ability to promptly react to them with due adaptations to threats in the future.
Related Results
Responsibilised Resilience? Reworking Neoliberal Social Policy Texts
Responsibilised Resilience? Reworking Neoliberal Social Policy Texts
Introduction This essay begins with the premise that resilience, broadly defined as positive adaptation despite adversity (Garmezy and Rutter), and resilience building are importa...
THE EVOLUTION OF CYBER RESILIENCE FRAMEWORKS IN NETWORK SECURITY: A CONCEPTUAL ANALYSIS
THE EVOLUTION OF CYBER RESILIENCE FRAMEWORKS IN NETWORK SECURITY: A CONCEPTUAL ANALYSIS
The Evolution of Cyber Resilience Frameworks in Network Security: A Conceptual Analysis provides a comprehensive overview of the development and application of cyber resilience fra...
Cyber Resilience Implications for the Financial System
Cyber Resilience Implications for the Financial System
In August of 2008, cyber-attacks began to affect the Georgian public and private sectors. The cyber-attacks coincided with the Russian Invasion of Georgia, which is also known as t...
correlation of human capital sustainability leadership style and resilience of the managers in airline operations group of an AIRLINE Company
correlation of human capital sustainability leadership style and resilience of the managers in airline operations group of an AIRLINE Company
This study aimed to analyze the correlation between Human Capital Sustainability Leadership style and manager resilience through a pragmatic worldview. Using explanatory sequential...
Cyber operational risk scenarios for insurance companies
Cyber operational risk scenarios for insurance companies
Abstract
Cyber Operational Risk: Cyber risk is routinely cited as one of the most important sources of operational risks facing organisations today, in various publications and ...
ThreatBased Security Risk Evaluation in the Cloud
ThreatBased Security Risk Evaluation in the Cloud
Research ProblemCyber attacks are targeting the cloud computing systems, where enterprises, governments, and individuals are outsourcing their storage and computational resources f...
Cyber Operations and the Threshold for Cyber Warfare: Ethical and Anticipated Ethical Issues
Cyber Operations and the Threshold for Cyber Warfare: Ethical and Anticipated Ethical Issues
Determining whether a cyber operation meets the threshold for being designated cyber warfare involves ethical, technical, and strategic criteria. These are primarily derived from i...
An Empirical Study on Cyber Crimes Against Women and Children in India
An Empirical Study on Cyber Crimes Against Women and Children in India
The aim of the study is to understand the Cyber-crimes against women and Children in India for a period of five years from 2017 to 2021. The study is based on Secondary data collec...

