Cybersecurity and information security – what goes where?
Abstract
Purpose The purpose of this paper is to define cybersecurity and cybersecurity governance in simplified terms – to explain to the boards of directors and executive management their responsibilities and accountabilities in this regard. Design/methodology/approach The primary research methodology utilized in this paper is desk research. A literature study is followed by some discussion in terms of the contribution made. Findings Clearly define the relationship between cybersecurity and information security, especially from a governance perspective. Research limitations/implications The paper is based predominantly on an ISO standard. Originality/value The simplification of terminology to be used in the governance of cybersecurity, together with assistance to the guiding of boards of directors regarding their duties and responsibilities as far as cybersecurity is concerned.
Journal: Information & Computer Security
Publisher: Emerald
Citations are the number of DOI-registered works in Crossref that cite this paper; references are how many works it cites. Full text is on the publisher site via the DOI link.