To main content

A Systematic Mapping Study on Cyber Security Indicator Data

Abstract

A security indicator is a sign that shows us what something is like or how a situation is changing and can aid us in making informed estimations on cyber risks. There are many different breeds of security indicators, but, unfortunately, they are not always easy to apply due to a lack of available or credible sources of data. This paper undertakes a systematic mapping study on the academic literature related to cyber security indicator data. We identified 117 primary studies from the past five years as relevant to answer our research questions. They were classified according to a set of categories related to research type, domain, data openness, usage, source, type and content. Our results show a linear growth of publications per year, where most indicators are based on free or internal technical data that are domain independent. While these indicators can give valuable information about the contemporary cyber risk, the increasing usage of unconventional data sources and threat intelligence feeds of more strategic and tactical nature represent a more forward-looking trend. In addition, there is a need to take methods and techniques developed by the research community from the conceptual plane and make them practical enough for real-world application
Read publication

Category

Academic literature review

Client

  • EC/H2020 / 830929
  • Research Council of Norway (RCN) / 257626

Language

English

Affiliation

  • SINTEF Digital / Software Engineering, Safety and Security
  • SINTEF Digital / Sustainable Communication Technologies
  • Norwegian Computing Center

Year

2021

Published in

Electronics

ISSN

2079-9292

Publisher

MDPI

Volume

10

Issue

9

View this publication at Cristin