Title
Cybersecurity maturity model for providing services in the financial sector in Peru
Date Issued
01 January 2021
Access level
metadata only access
Resource Type
conference paper
Author(s)
Publisher(s)
Institute of Electrical and Electronics Engineers Inc.
Abstract
In this paper, we proposed a cybersecurity maturity model for providing services to organizations in the financial sector. To develop this proposal, existing frameworks and models have been taken as a reference, expanding their scope by integrating cloud security and privacy capabilities. In this way, the proposed model is supported by a measurement tool that facilitates diagnosis and result visualization. The evaluation process is performed based on the fulfillment of controls, which are evaluated on a scale of five levels of maturity: 1. Initial, 2. In Development, 3. Defined, 4. Managed and 5. Optimized. The results are grouped by domains and functions. The model was validated with pilot studies in two entities from the financial sector in Lima, Peru. In the performed validation, the preliminary results showed an average acceptance level of 4.3 on a 1 to 5 scale while the obtained maturity level was 3. Those preliminary results allowed us to propose activities which eliminate the gaps found as well as improve the organization's capabilities in the evaluated process.
Language
English
OCDE Knowledge area
Ingeniería de sistemas y comunicaciones
Negocios, Administración
Subjects
Scopus EID
2-s2.0-85123576751
ISBN of the container
978-166540221-7
Conference
2021 7th Congreso Internacional de Innovacion y Tendencias en Ingenieria, CONIITI 2021 - Conference Proceedings
Sources of information:
Directorio de Producción Científica
Scopus