Ciberseguridad aplicada: un enfoque integral de riesgos, gobernanza y análisis forense digital
Authors/Creators
- 1. Instituto Superior Técnologico Vicente Rocafuerte, Ecuador
- 2. Universidad de Guayaquil, Ecuador
- 3. Instituto Superior Tecnologico Vicente Rocafuerte, Ecuador
Description
En un entorno digital caracterizado por la complejidad, la interconexión y la constante transformación tecnológica, la ciberseguridad se posiciona como un eje estratégico para la protección de la información y la continuidad de los sistemas. Este libro ofrece una visión integral que trasciende los enfoques tradicionales, articulando de manera coherente los fundamentos conceptuales, los modelos de gobernanza, las dinámicas de ataque y defensa, y los procesos de análisis forense digital que permiten comprender y enfrentar los desafíos actuales del ciberespacio. A través de un enfoque estructurado y aplicado, la obra explora cómo las amenazas evolucionan en paralelo con la tecnología, evidenciando la necesidad de adoptar estrategias adaptativas que integren aspectos técnicos, organizacionales y humanos. Asimismo, se examinan marcos normativos y metodologías que orientan la gestión del riesgo, destacando su papel en la toma de decisiones y en la construcción de entornos resilientes. De igual manera, se analizan las prácticas ofensivas y defensivas que configuran el escenario de la seguridad digital, así como la influencia del comportamiento humano en la generación de vulnerabilidades. Finalmente, se profundiza en el análisis forense como mecanismo clave para la reconstrucción de incidentes, la generación de evidencia y el fortalecimiento de las capacidades de respuesta. Esta obra constituye una herramienta académica y profesional que permite comprender la ciberseguridad como un sistema dinámico, donde la anticipación, la adaptación y el aprendizaje continuo son esenciales para proteger el valor más crítico de la era digital: la información.
Files
Ebook_978-1-968794-45-3.pdf
Files
(5.0 MB)
| Name | Size | Download all |
|---|---|---|
|
md5:d29a40a56b8c277c7f6c8f28199e367d
|
185.9 kB | Preview Download |
|
md5:447a70fda6882fc21ada099f6dbd4485
|
4.8 MB | Preview Download |
Additional details
Identifiers
Related works
- Is cited by
- Book: 978-1-968794-45-3 (ISBN)
Dates
- Available
-
2026-05-08
References
- Abbas, T. M. J. (2015). Studying the documentation process in digital forensic investigation frameworks/models. Journal of Al-Nahrain University – Science, 18(4), 153–162. https://doi.org/10.22401/JNUS.18.4.21 Abdullah, M., Nawaz, M. M., Saleem, B., Zahra, M., Ashfaq, E. b., & Muhammad, Z. (2025). Evolution Cybercrime—Key Trends, Cybersecurity Threats, and Mitigation Strategies from Historical Data. Analytics, 4(3), 25. https://doi.org/10.3390/analytics4030025 Abeysekera I. (2026). Open source tools: an evaluation for digital forensic investigations. Frontiers in research metrics and analytics, 11, 1790333. https://doi.org/10.3389/frma.2026.1790333 Abirami, A., Lakshmanaprakash, S., Priya, R. L., Hirlekar, V., & Dalal, B. (2024). Proactive analysis and detection of cyber-attacks using deep learning techniques. Indian Journal of Science and Technology, 17(15), 1596–1605. https://doi.org/10.17485/IJST/v17i15.3044 Admass, W. S., Munaye, Y. Y., & Diro, A. A. (2024). Cyber security: State of the art, challenges and future directions. Cyber Security and Applications, 2, 100031. https://doi.org/10.1016/j.csa.2023.100031 Alanazi, M., Mahmood, A., & Chowdhury, M. J. M. (2023). SCADA vulnerabilities and attacks: A review of the state-of-the-art and open issues. Computers & Security, 125, 103028. https://doi.org/10.1016/j.cose.2022.103028 Aleisa, N. (2026). The Study of Digital Forensics in KSA: Education, and Prosecution Capabilities: A Needs-Based Analysis. Electronics, 15(2), 316. https://doi.org/10.3390/electronics15020316 Alghamdi, A. (2022). The role of social engineering in cybersecurity and its impact. Journal of Information Security, 13, 363–379. https://doi.org/10.4236/jis.2022.134020 Alhamed, M., & Rahman, M. M. H. (2023). A Systematic Literature Review on Penetration Testing in Networks: Future Research Directions. Applied Sciences, 13(12), 6986. https://doi.org/10.3390/app13126986 AlKhanafseh, M., & Surakhi, O. (2024). Evidence Preservation in Digital Forensics: An Approach Using Blockchain and LSTM-Based Steganography. Electronics, 13(18), 3729. https://doi.org/10.3390/electronics13183729 Almaiah, M. A., Saqr, L. M., Al-Rawwash, L. A., Altellawi, L. A., Al-Ali, R., & Almomani, O. (2024). Classification of cybersecurity threats, vulnerabilities and countermeasures in database systems. Computers, Materials & Continua, 81(2), 3189–3220. https://doi.org/10.32604/cmc.2024.057673 Alqaydi, S., Othman, A., & Abuljadayel, L. H. (2024). The role of AI in cyber security: Safeguarding digital identity. Journal of Information Security, 15, 245–278. https://doi.org/10.4236/jis.2024.152015 Alshammari, S. S., Soh, B., & Li, A. (2025). Understanding Social Engineering Victimisation on Social Networking Sites: A Comprehensive Review of Factors Influencing User Susceptibility to Cyber-Attacks. Information, 16(2), 153. https://doi.org/10.3390/info16020153 Alsodi, O., Zhou, X., Gururajan, R., Shrestha, A., & Btoush, E. (2025). From Tweets to Threats: A Survey of Cybersecurity Threat Detection Challenges, AI-Based Solutions and Potential Opportunities in X. Applied Sciences, 15(7), 3898. https://doi.org/10.3390/app15073898 Alsowail, R. A., & Al-Shehari, T. (2022). Techniques and countermeasures for preventing insider threats. PeerJ. Computer science, 8, e938. https://doi.org/10.7717/peerj-cs.938 Amine, A. M., Chakir, E. M., Issam, T., & Idrissi Khamlichi, Y. (2023). A review of cybersecurity management standards applied in higher education institutions. International Journal of Safety and Security Engineering, 13(6), 1109–1116. https://www.iieta.org/download/file/fid/115034 Antariksa, M. D. S., Perangin Angin, M., & Widodo, A. P. (2025). COBIT 2019 framework in IT governance: A systematic literature review of implementation challenges and benefits across various industry sectors. Journal of Renewable Energy Electrical and Computer Engineering, 5(1), 99–105. https://doi.org/10.29103/jreece.v5i1.19501 Antunes, M., Maximiano, M., & Gomes, R. (2022). A Client-Centered Information Security and Cybersecurity Auditing Framework. Applied Sciences, 12(9), 4102. https://doi.org/10.3390/app12094102 Arshad, M., Ahmad, A., Onn, C. W., & Sam, E. A. (2025). Investigating methods for forensic analysis of social media data to support criminal investigations. Frontiers in Computer Science, 7, Article 1566513. https://doi.org/10.3389/fcomp.2025.1566513 Aslan, Ö., Aktuğ, S. S., Ozkan-Okay, M., Yilmaz, A. A., & Akin, E. (2023). A comprehensive review of cyber security vulnerabilities, threats, attacks, and solutions. Electronics, 12(6), 1333. https://doi.org/10.3390/electronics12061333 Awan, M., & Alam, A. (2025). Cybersecurity Threats and Defensive Strategies for Small and Medium Firms: A Systematic Mapping Study. Administrative Sciences, 15(12), 481. https://doi.org/10.3390/admsci15120481 Baltuttis, D., Teubner, T., & Adam, M. T. P. (2024). A typology of cybersecurity behavior among knowledge workers. Computers & Security, 140, 103741. https://doi.org/10.1016/j.cose.2024.103741 Berrios, S., Leiva, D., Olivares, B., Allende-Cid, H., & Hermosilla, P. (2025). Systematic Review: Malware Detection and Classification in Cybersecurity. Applied Sciences, 15(14), 7747. https://doi.org/10.3390/app15147747 Bérubé, M., Beaulieu, L.-A., Allard, S., & Denault, V. (2025). From digital trace to evidence: Challenges and insights from a trial case study. Science & Justice, 65(5), Article 101306. https://doi.org/10.1016/j.scijus.2025.101306 Biedermann, A., & Kotsoglou, K. N. (2020). Digital evidence exceptionalism? A review and discussion of conceptual hurdles in digital evidence transformation. Forensic science international. Synergy, 2, 262–274. https://doi.org/10.1016/j.fsisyn.2020.08.004 Bossler, A. M., & Berenblum, T. (2019). Introduction: New directions in cybercrime research. Journal of Crime and Justice, 42(5), 495–499. https://doi.org/10.1080/0735648X.2019.1692426 Bouramdane, A.-A. (2023). Cyberattacks in Smart Grids: Challenges and Solving the Multi-Criteria Decision-Making for Cybersecurity Options, Including Ones That Incorporate Artificial Intelligence, Using an Analytical Hierarchy Process. Journal of Cybersecurity and Privacy, 3(4), 662-705. https://doi.org/10.3390/jcp3040031 Buchler, N., La Fleur, C. G., Hoffman, B., Rajivan, P., Marusich, L., & Lightner, L. (2018). Cyber Teaming and Role Specialization in a Cyber Security Defense Competition. Frontiers in psychology, 9, 2133. https://doi.org/10.3389/fpsyg.2018.02133 Chen, S., Hao, M., Ding, F., Jiang, D., Dong, J., Zhang, S., Guo, Q., & Gao, C. (2023). Exploring the global geography of cybercrime and its driving forces. Humanities & social sciences communications, 10(1), 71. https://doi.org/10.1057/s41599-023-01560-x Chindrus, C., & Caruntu, C.-F. (2023). Securing the Network: A Red and Blue Cybersecurity Competition Case Study. Information, 14(11), 587. https://doi.org/10.3390/info14110587 Chu, W.-L., Lin, C.-J., & Chang, K.-N. (2019). Detection and Classification of Advanced Persistent Threats and Attacks Using the Support Vector Machine. Applied Sciences, 9(21), 4579. https://doi.org/10.3390/app9214579 Cremer, F., Sheehan, B., Fortmann, M., Kia, A. N., Mullins, M., Murphy, F., & Materne, S. (2022). Cyber risk and cybersecurity: A systematic review of data availability. The Geneva Papers on Risk and Insurance: Issues and Practice, 47(3), 698–736. https://doi.org/10.1057/s41288-022-00266-6 Cruz, C. (2024). Innovative Learning in a Digital Forensics Laboratory: Tools and Techniques for Data Recovery. Applied Sciences, 14(23), 11095. https://doi.org/10.3390/app142311095 Curtis, J., & Oxburgh, G. (2022). Understanding cybercrime in 'real world' policing and law enforcement. The Police Journal: Theory, Practice and Principles, 96(4). https://doi.org/10.1177/0032258X221107584 Dalal, A. (2021). Exploring next-generation cybersecurity tools for advanced threat detection and incident response. SSRN Electronic Journal. https://doi.org/10.2139/ssrn.5424096 D'Anna, T., Puntarello, M., Cannella, G., Scalzo, G., Buscemi, R., Zerbo, S., & Argo, A. (2023). The Chain of Custody in the Era of Modern Forensics: From the Classic Procedures for Gathering Evidence to the New Challenges Related to Digital Data. Healthcare (Basel, Switzerland), 11(5), 634. https://doi.org/10.3390/healthcare11050634 Darem, A., Al-Hashmi, A., Alkhaldi, T. M., Alashjaee, A. M., Alanazi, S., & Ebad, S. (2023). Cyber threats classifications and countermeasures in banking and financial sector. IEEE Access. https://doi.org/10.1109/ACCESS.2023.3327016 Darmawan, R. K., & Cahyono, A. D. (2025). Implementation of Zero-Knowledge Encryption in a Web-Based Password Manager. International Journal Software Engineering and Computer Science (IJSECS), 5(2), 633-644. https://doi.org/10.35870/ijsecs.v5i2.4207 De Nobrega, K. M., Rutkowski, A.-F., & Saunders, C. (2024). The whole of cyber defense: Syncing practice and theory. The Journal of Strategic Information Systems, 33(4), 101861. https://doi.org/10.1016/j.jsis.2024.101861 Dedouit, F., Ducloyer, M., Elifritz, J., Adolphi, N. L., Yi-Li, G. W., Decker, S., Ford, J., Kolev, Y., & Thali, M. (2025). The current state of forensic imaging - perspectives. International journal of legal medicine, 139(6), 2819–2827. https://doi.org/10.1007/s00414-025-03466-6 Dhanaraj, A. (2025). The evolution of cyber threats: From traditional attacks to AI-powered challenges. European Journal of Computer Science and Information Technology, 13(36), 50–61. https://doi.org/10.37745/ejcsit.2013/vol13n365061 Dimitriadis, A., Ivezic, N., Kulvatunyou, B., & Mavridis, I. (2020). D4I - Digital forensics framework for reviewing and investigating cyber attacks. Array (New York, N.Y.), 5, 10.1016/j.array.2019.100015. https://doi.org/10.1016/j.array.2019.100015 Dimitrov, G. (2020). A brief history of cyber intelligence. American Intelligence Journal, 37(1), 107–114.https://www.jstor.org/stable/27087688 Dizon, M. A. C., & Meehan, A. (2024). Technical principles and protocols of encryption and their significance and effects on technology regulation. Information & Communications Technology Law, 34(2), 79–105. https://doi.org/10.1080/13600834.2024.2404280 Ewoh, P., & Vartiainen, T. (2024). Vulnerability to cyberattacks and sociotechnical solutions for health care systems: Systematic review. Journal of Medical Internet Research, 26, e46904. https://doi.org/10.2196/46904 Fehis, S., Nouali, O., & Kechadi, T. (2021). Secure encryption key management as a SecaaS based on Chinese wall security policy. Journal of Information Security and Applications, 63, 102975. https://doi.org/10.1016/j.jisa.2021.102975 Ferrer-Oliva, M., Medina-Merodio, J. A., Martínez-Herraiz, J. J., & Cilleruelo-Rodríguez, C. (2025). Relational Framework of Cyberattacks: Empirical Evidence from Multistage Incidents. Sensors (Basel, Switzerland), 25(23), 7124. https://doi.org/10.3390/s25237124 Gaifulina, A. (2025). The concept of red team and blue team synergy as a factor in enhancing an organization's resilience to cyberattacks. The American Journal of Applied Sciences, 7(11), 55–60. https://doi.org/10.37547/tajas/Volume07Issue11-06 Gilbert, C., Gilbert, M. A., & Jnr, M. D. (2025). Detection and response strategies for advanced persistent threats (APTs). International Journal of Scientific Research and Modern Technology, 4(4), 5–21. https://doi.org/10.38124/ijsrmt.v4i4.367 Greavu-Şerban, V., Constantin, F., & Necula, S.-C. (2025). Exploring Heuristics and Biases in Cybersecurity: A Factor Analysis of Social Engineering Vulnerabilities. Systems, 13(4), 280. https://doi.org/10.3390/systems13040280 Grigaliūnas, Š., Brūzgienė, R., & Venčkauskas, A. (2023). The Method for Identifying the Scope of Cyberattack Stages in Relation to Their Impact on Cyber-Sustainability Control over a System. Electronics, 12(3), 591. https://doi.org/10.3390/electronics12030591 Guttman, B., White, D. R., & Walraven, T. (2022). Digital evidence preservation: Considerations for evidence handlers. National Institute of Standards and Technology. https://doi.org/10.6028/NIST.IR.8387 Haji, I. A., Mohammed, S. D., & Mousa, K. M. (2026). Blockchain based chain of custody and digital evidence legality in post conflict prosecutions. Frontiers in Blockchain, 9, Article 1801364. https://doi.org/10.3389/fbloc.2026.1801364 Hatfield, J. M. (2019). Virtuous human hacking: The ethics of social engineering in penetration-testing. Computers & Security, 83, 354–366. https://doi.org/10.1016/j.cose.2019.02.012 International Organization for Standardization, & International Electrotechnical Commission. (2012). ISO/IEC 27032:2012 Information technology—Security techniques—Guidelines for cybersecurity. https://itgeu.blob.core.windows.net/files/download/3911-isoiec-27032%7Bed1.0%7Den.pdf International Organization for Standardization, & International Electrotechnical Commission. (2022). ISO/IEC 27001:2022 Information security, cybersecurity and privacy protection—Information security management systems—Requirements (3rd ed.). https://www.exactls.com/wp-content/uploads/2025/02/ISO_IEC-270012022-ed.3.pdf Jones, N., Whaiduzzaman, M., Jan, T., Adel, A., Alazab, A., & Alkreisat, A. (2025). A CIA Triad-Based Taxonomy of Prompt Attacks on Large Language Models. Future Internet, 17(3), 113. https://doi.org/10.3390/fi17030113 Jouini, M., Ben Arfa Rabai, L., & Ben Aissa, A. (2014). Classification of security threats in information systems. Procedia Computer Science, 32, 489–496. https://doi.org/10.1016/j.procs.2014.05.452 Kara, I. (2021). Cyber-espionage malware attacks detection and analysis: A case study. Journal of Computer Information Systems, 62(6), 1253–1270. https://doi.org/10.1080/08874417.2021.2004566 Karagiannis, C., & Vergidis, K. (2021). Digital Evidence and Cloud Forensics: Contemporary Legal Challenges and the Power of Disposal. Information, 12(5), 181. https://doi.org/10.3390/info12050181 Kitsios, F., Chatzidimitriou, E., & Kamariotou, M. (2023). The ISO/IEC 27001 Information Security Management Standard: How to Extract Value from Data in the IT Sector. Sustainability, 15(7), 5828. https://doi.org/10.3390/su15075828 Klasén, L., Fock, N., & Forchheimer, R. (2024). The invisible evidence: Digital forensics as key to solving crimes in the digital age. Forensic Science International, 362, 112133. https://doi.org/10.1016/j.forsciint.2024.112133 Ksibi, S., Jaidi, F., & Bouhoula, A. (2022). A Comprehensive Study of Security and Cyber-Security Risk Management within e-Health Systems: Synthesis, Analysis and a Novel Quantified Approach. Mobile networks and applications: MONET, 1–21. Advance online publication. https://doi.org/10.1007/s11036-022-02042-1 Kumar, P. R., & Goel, S. (2025). A secure and efficient encryption system based on adaptive and machine learning for securing data in fog computing. Scientific reports, 15(1), 11654. https://doi.org/10.1038/s41598-025-92245-9 Kuzminykh, L., Ghita, B., & Shiaeles, S. (2021). Comparative analysis of cryptographic key management systems. 20th International Conference on Next Generation Teletraffic and Wired/Wireless Advanced Networks and Systems (NEW2AN 2020) and 13th Conference on the Internet of Things and Smart Spaces (ruSMART 2020). St. Petersburg, Russia. Lallie, H. S., Thompson, A., Titis, E., & Stephens, P. (2025). Analysing Cyber Attacks and Cyber Security Vulnerabilities in the University Sector. Computers, 14(2), 49. https://doi.org/10.3390/computers14020049 Li, Y., & Liu, Q. (2021). A comprehensive review study of cyber-attacks and cyber security: Emerging trends and recent developments. Energy Reports, 7, 8176–8186. https://doi.org/10.1016/j.egyr.2021.08.126 Liu, X., Ahmad, S. F., Anser, M. K., Ke, J., Irshad, M., Ul-Haq, J., & Abbas, S. (2022). Cyber security threats: A never-ending challenge for e-commerce. Frontiers in psychology, 13, 927398. https://doi.org/10.3389/fpsyg.2022.927398 Lorenzini, G., Shaw, D. M., & Elger, B. S. (2022). It takes a pirate to know one: ethical hackers for healthcare cybersecurity. BMC medical ethics, 23(1), 131. https://doi.org/10.1186/s12910-022-00872-y Luidold, C., & Jungbauer, C. (2024). Cybersecurity policy framework requirements for the establishment of highly interoperable and interconnected health data spaces. Frontiers in medicine, 11, 1379852. https://doi.org/10.3389/fmed.2024.1379852 Mandru, S. (2020). Ethical hacking and penetration testing: Analyzing the role of ethical hacking and penetration testing in identifying vulnerabilities and improving overall cybersecurity defenses. International Journal of Core Engineering & Management, 6(7). https://ijcem.in/wp-content/uploads/2024/08/ETHICAL-HACKING-AND-PENETRATION-TESTING-ANALYZING-THE-ROLE-OF-ETHICAL-HACKING-AND-PENETRATION-TESTING-IN-IDENTIFYING-VULNERABILITIES-AND-IMPROVING-OVERALL-CYBERSECURITY-DEFENSES.pdf McCumber, C. J. R. (1991). Information systems security: A comprehensive model. 14th National Computer Security Conference, Washington, D.C., Estados Unidos. McIntosh, T. R., Susnjak, T., Liu, T., Watters, P., Xu, D., Liu, D., Nowrozy, R., & Halgamuge, M. N. (2024). From COBIT to ISO 42001: Evaluating cybersecurity frameworks for opportunities, risks, and regulatory compliance in commercializing large language models. Computers & Security, 144, 103964. https://doi.org/10.1016/j.cose.2024.103964 Mohamed, A. M. E., Alnor, N. H. A., Mohammed, O. A. A., Al-Matari, E. M., Alhebri, A., & Ah, A. (2024). The impact of information technology governance according to the COBIT on performance. International Journal of Advanced and Applied Sciences, 11(3), 127–136. https://www.science-gate.com/IJAAS/Articles/2024/2024-11-03/1021833ijaas202403014.pdf Montañez, R., Golob, E., & Xu, S. (2020). Human Cognition Through the Lens of Social Engineering Cyberattacks. Frontiers in psychology, 11, 1755. https://doi.org/10.3389/fpsyg.2020.01755 Morić, Z., Dakić, V., & Ogrizek Biškupić, I. (2026). An Empirical Assessment of Digital Forensic Process Reliability Using Integrated ISO/IEC 27037 and 27041 Standards. Journal of Cybersecurity and Privacy, 6(2), 57. https://doi.org/10.3390/jcp6020057 Nachrowi, E., Nurhadryani, Y., & Sukoco, H. (2020). Evaluation of governance and management of information technology services using COBIT 2019 and ITIL 4. Jurnal RESTI (Rekayasa Sistem dan Teknologi Informasi), 4(4), 764–774. https://doi.org/10.29207/resti.v4i4.2265 Nath, S., Summers, K., Baek, J., & Ahn, G.-J. (2024). Digital evidence chain of custody: Navigating new realities of digital forensics. International Conference on Trust, Privacy and Security in Intelligent Systems, and Applications. Washington, D.C., United States. Nisioti, A., Loukas, G., Mylonas, A., & Panaousis, E. (2023). Forensics for multi-stage cyber incidents: Survey and future directions. Forensic Science International: Digital Investigation, 44, Article 301480. https://doi.org/10.1016/j.fsidi.2022.301480 Nonum, E. O., Avwokuruaye, O., & Umar, A. M. (2025). Social engineering: Understanding human factors in cyber security. International Journal of Convergent and Informatics Science Research, 7(9). https://doi.org/10.70382/hijcisr.v07i9.032 Oh, S., Lee, E., Lee, S., Park, J., Park, S., & Kim, G. (2026). Forensic detection of medical image manipulation using PACS and DICOM artifacts. Journal of forensic sciences, 71(1), 371–387. https://doi.org/10.1111/1556-4029.70191 Onome, O. A. (2023). Computer forensics and advanced methodology. International Journal of Emerging Science and Engineering (IJESE), 11(7), 1–15. https://doi.org/10.35940/ijese.G2552.0611723 Onwuadiamu, G. (2025). Cybercrime in criminology: A systematic review of criminological theories, methods, and concepts. Journal of Economic Criminology, 8, 100136. https://doi.org/10.1016/j.jeconc.2025.100136 Oppenheimer, H. (2024). How the process of discovering cyberattacks biases our understanding of cybersecurity. Journal of Peace Research, 61(1). https://doi.org/10.1177/00223433231217687 Patel, H. G., & Patel, J. (2015). An analysis upon various process and model of digital forensic investigation: Developing a structured approach for digital forensic investigation. International Journal of Information Technology and Management, 8(12). https://ignited.in/index.php/ijitm/article/view/594/1045 Phillips, K., Davidson, J. C., Farr, R. R., Burkhardt, C., Caneppele, S., & Aiken, M. P. (2022). Conceptualizing Cybercrime: Definitions, Typologies and Taxonomies. Forensic Sciences, 2(2), 379-398. https://doi.org/10.3390/forensicsci2020028 Qureshi, M. B., Qureshi, M. S., Tahir, S., Anwar, A., Hussain, S., Uddin, M., & Chen, C.-L. (2022). Encryption Techniques for Smart Systems Data Security Offloaded to the Cloud. Symmetry, 14(4), 695. https://doi.org/10.3390/sym14040695 Qureshi, S. U., He, J., Tunio, S., Zhu, N., Nazir, A., Wajahat, A., Ullah, F., & Wadud, A. (2024). Systematic review of deep learning solutions for malware detection and forensic analysis in IoT. Journal of King Saud University – Computer and Information Sciences, 36(8), Article 102164. https://doi.org/10.1016/j.jksuci.2024.102164 Qusef, A., & Alkilani, H. (2022). The effect of ISO/IEC 27001 standard over open-source intelligence. PeerJ. Computer science, 8, e810. https://doi.org/10.7717/peerj-cs.810 Raghuwanshi, K. P., Dongare, A. M., Nimkande, S. A., & Thakare, D. V. (2025). The history and evolution of cyber attacks: A comprehensive study. International Journal of Advanced Research in Computer and Communication Engineering, 14(11). https://doi.org/10.17148/IJARCCE.2025.141160 Rahman, M. M., Dhakal, K., Gony, N., Shuvra, M. K., & Rahman, M. (2025). AI integration in cybersecurity software: Threat detection and response. International Journal of Innovative Research and Scientific Studies, 8(3). https://doi.org/10.53894/ijirss.v8i3.7403 Rana, S., Khoda Parast, F., Kelly, B., Wang, Y., & Kent, K. B. (2023). A comprehensive survey of cryptography key management systems. Journal of Information Security and Applications, 78, 103607. https://doi.org/10.1016/j.jisa.2023.103607 Razaque, A., Hariri, S., Alajlan, A. M., & Yoo, J. (2025). A comprehensive review of cybersecurity vulnerabilities, threats, and solutions for the Internet of Things at the network-cum-application layer. Computer Science Review, 58, 100789. https://doi.org/10.1016/j.cosrev.2025.100789 Reuben-Owoh, B., & Haig, E. (2025). A systematic review of voluntary cybersecurity standards and frameworks. International Journal of Information Security, 24, 206. https://doi.org/10.1007/s10207-025-01121-0 Roman, A.-S. (2023). Evaluating the Privacy and Utility of Time-Series Data Perturbation Algorithms. Mathematics, 11(5), 1260. https://doi.org/10.3390/math11051260 Safitra, M. F., Lubis, M., & Fakhrurroja, H. (2023). Counterattacking Cyber Threats: A Framework for the Future of Cybersecurity. Sustainability, 15(18), 13369. https://doi.org/10.3390/su151813369 Sakshi, Malik, A., & Sharma, A. K. (2023). Blockchain-based digital chain of custody multimedia evidence preservation framework for internet-of-things. Journal of Information Security and Applications, 77, 103579. https://doi.org/10.1016/j.jisa.2023.103579 Salas Riega, J. L., Riega, Y., Ninaquispe Soto, M. E., & Salas-Riega, J. M. (2025). Cybersecurity and the NIST framework: A systematic review of its implementation and effectiveness against cyber threats. International Journal of Advanced Computer Science and Applications, 16(6). https://doi.org/10.14569/IJACSA.2025.0160672 Salim, D. T., Singh, M. M., & Keikhosrokiani, P. (2023). A systematic literature review for APT detection and Effective Cyber Situational Awareness (ECSA) conceptual model. Heliyon, 9(7), e17156. https://doi.org/10.1016/j.heliyon.2023.e17156 Santos, P., Abreu, R., Reis, M. J. C. S., Serôdio, C., & Branco, F. (2025). A Systematic Review of Cyber Threat Intelligence: The Effectiveness of Technologies, Strategies, and Collaborations in Combating Modern Threats. Sensors (Basel, Switzerland), 25(14), 4272. https://doi.org/10.3390/s25144272 Shah, Z., Kyaw, A., Truong, H. P., Ullah, I., & Levula, A. (2022). Forensic Investigation of Remnant Data on USB Storage Devices Sold in New Zealand. Applied Sciences, 12(12), 5928. https://doi.org/10.3390/app12125928 Shoufan, A., & Damiani, E. (2017). On inter-rater reliability of information security experts. Journal of Information Security and Applications, 37, 101–111. https://doi.org/10.1016/j.jisa.2017.10.006 Smith, K. J., Dhillon, G., & Carter, L. (2021). User values and the development of a cybersecurity public policy for the IoT. International Journal of Information Management, 56, 102123. https://doi.org/10.1016/j.ijinfomgt.2020.102123 Taherdoost, H. (2022). Understanding Cybersecurity Frameworks and Information Security Standards—A Review and Comprehensive Overview. Electronics, 11(14), 2181. https://doi.org/10.3390/electronics11142181 Tariq, U., Ahmed, I., Bashir, A. K., & Shaukat, K. (2023). A Critical Cybersecurity Analysis and Future Research Directions for the Internet of Things: A Comprehensive Review. Sensors (Basel, Switzerland), 23(8), 4117. https://doi.org/10.3390/s23084117 Toivanen, J., & Luoma-aho, V. (2026). The life cycle approach to effective crisis communications in mitigating cyber threats and attacks. Proceedings of the 21st International Conference on Cyber Warfare and Security, 21(1), 494–504. https://doi.org/10.34190/iccws.21.1.4509 Tzavara, V., & Vassiliadis, S. (2024). Tracing the evolution of cyber resilience: A historical and conceptual review. International Journal of Information Security, 23, 1695–1719. https://doi.org/10.1007/s10207-023-00811-x Ukwadinachi, N. (2025). From Mitnick to modern database threats: Evolution of social engineering tactics and their impact on data integrity. Journal of Technology Studies, 50(1), 14–29. https://doi.org/10.21061/jts.438 Urooj, S., Lata, S., Ahmad, S., Mehfuz, S., & Kalathil, S. (2023). Cryptographic data security for reliable wireless sensor network. Alexandria Engineering Journal, 72, 37–50. https://doi.org/10.1016/j.aej.2023.03.061 Vaya-Arboledas, Á., Ferrer-Oliva, M., & Medina-Merodio, J. A. (2025). Evolution and Perspectives in IT Governance: A Systematic Literature Review. Computers, 14(12), 520. https://doi.org/10.3390/computers14120520 Viano, E. C. (2017). Cybercrime, organized crime, and societal responses. Springer. Viriyatama Lim, M., & Indah Fianty, M. (2023). Enhancing Information Technology Governance: A Comprehensive Evaluation Of The 2019 COBIT Framework In The Retail Industry. International Journal of Science, Technology & Management, 4(5), 1389–1395. https://doi.org/10.46729/ijstm.v4i5.955 Waelchli, S., & Walter, Y. (2025). Reducing the risk of social engineering attacks using SOAR measures in a real world environment: A case study. Computers & Security, 148, 104137. https://doi.org/10.1016/j.cose.2024.104137 Yulianto, S., Soewito, B., Lumban Gaol, F., & Kurniawan, A. (2025). Enhancing cybersecurity resilience through advanced red-teaming exercises and MITRE ATT&CK framework integration: A paradigm shift in cybersecurity assessment. Cyber Security and Applications, 3, 100077. https://doi.org/10.1016/j.csa.2024.100077 Yusuf, A. M., Sari, D. M., & Musawwir. (2025). Digital forensics in open journal systems: Case study on security breach and data recovery. Journal of Embedded Systems, Security and Intelligent Systems, 6(3), 522–557. https://doi.org/10.59562/jessi.v6i3.9778 Zaid, T., & Garai, S. (2024). Emerging trends in cybersecurity: A holistic view on current threats, assessing solutions, and pioneering new frontiers. Blockchain in Healthcare Today, 7, Article 302. https://doi.org/10.30953/bhty.v7.302 Zhang M. (2022). Forensic imaging: a powerful tool in modern forensic investigation. Forensic sciences research, 7(3), 385–392. https://doi.org/10.1080/20961790.2021.2008705 Zhang, W., Xing, J., & Li, X. (2026). Penetration testing for system security: Methods and practical approaches (arXiv:2505.19174v2). arXiv. https://arxiv.org/abs/2505.19174 Zhou, Y., Tiwari, M., Bernot, A., & Lin, K. (2024). Metacrime and cybercrime: Exploring the convergence and divergence in digital criminality. Asian Journal of Criminology, 19, 419–439. https://doi.org/10.1007/s11417-024-09436-y