A Comprehensive Model for Enhancing Cybersecurity Resilience and IT Governance Through Red Teaming Exercises
Author
Abstract

This study explores the pressing need for more effective IT governance and cybersecurity resilience within enterprises by strategically integrating red teaming exercises. Our research approach involved a comprehensive investigation encompassing literature review, surveys, interviews, and robust data analysis. We leveraged established frameworks like ISO 27001:2022, NIST CSF, and COBIT 2019 for model development. The results demonstrate a significant correlation between the frequency of red teaming exercises and higher IT governance maturity, highlighting the positive impact of increased engagement. The study emphasizes the value of incorporating red teaming insights to enhance IT governance maturity and bolster cybersecurity resilience, accounting for organizational size and industry sector variables. It underscores the critical importance of seamlessly integrating red teaming outcomes into governance procedures to fortify cybersecurity defenses and enable organizations to adapt swiftly to evolving threats, thus enhancing their overall security posture. Our model provides a practical roadmap for organizations dedicated to strengthening cybersecurity resilience in today s fast-changing digital landscape.

Year of Publication
2023
Date Published
nov
Publisher
IEEE
ISBN Number
9798350361100
URL
https://ieeexplore.ieee.org/document/10374068/
DOI
10.1109/ICT60153.2023.10374068
Google Scholar | BibTeX | DOI