A Model framework for managing cyber security challenges faced by small it firms

Loading...
Thumbnail Image

Date

2025

Journal Title

Journal ISSN

Volume Title

Publisher

Abstract

Security threats and other cyber security-related concerns are becoming more prevalent in the business world. Small-to-medium-sized organizations are frequently targeted by attackers, and some find it challenging to withstand such attacks. Due to a lack of experience and the high cost of security solutions, small IT firms frequently encounter difficulties when setting up and implementing security measures. Hence, small IT firms and its stake holders are required to acknowledge the risk of cyber threats and continue their businesses without having a proper solution for their security related issues. The researcher conducted a comprehensive survey that focuses on the requirement of technical implementation of several cyber security controls for cloud- based small IT firms in accordance with this particular research. The survey encompassed a range of questions including existing cloud security controls, policies and procedures, access control and authentication mechanisms, cryptographic controls, password security, employee security awareness, incident response, security assessments and digital forensic, which helps to identify and understand overall organizations’ operational structure and its business environment with the requirement for cybersecurity. The survey was sent to the small IT firms who is handling healthcare business systems and the small IT firms who is handling retail business systems. The information collected was thoroughly reviewed and visualized to identify security related challenges for cloud based small IT firms. Based on the identified security requirements of different kind of businesses, a framework was implemented to build small IT firms’ security infrastructure using feasible open-source solutions. The most suitable open-source solutions were selected based on the type of the organization, types of the data collected, existing IT infrastructure, etc. The attributes of the framework ought to be cost effectiveness and user friendliness.

Description

Citation

Sewwandi, M.A.N.T. (2025). A Model framework for managing cyber security challenges faced by small it firms [Master's theses, University of Moratuwa]. Institutional Repository University of Moratuwa. https://dl.lib.uom.lk/handle/123/24849

DOI

Endorsement

Review

Supplemented By

Referenced By