STRATEGIC MANAGEMENT OF CYBERSECURITY

Authors

  • David Aguiar Autor

DOI:

https://doi.org/10.63330/aurumpub.015-017

Keywords:

Cybersecurity, Strategic management, Organizational culture, Prevention

Abstract

Strategic management of cybersecurity is a central topic in an increasingly digital and interconnected world. This study aimed to analyze cybersecurity from a holistic perspective, addressing fundamental concepts, management practices, and challenges faced by organizations. The methodology employed was predominantly bibliographic, involving the analysis of books and articles discussing information security, cyber defense, and IT governance, enabling an in-depth understanding of the subject. Research findings revealed that cybersecurity should be understood as an integrated set of practices, policies, and technologies that go beyond the mere installation of technical tools. The study emphasized the importance of aligning digital security with organizational objectives, stressing that security should not be viewed as a cost but as a strategic investment essential for operational continuity and the protection of critical assets. The research also identified that organizational culture and continuous employee training are crucial factors for the effectiveness of implemented security policies. Conclusions indicated that, to effectively address cyber threats, organizations must adopt a proactive approach that includes strategic planning, threat prevention and detection, as well as incident response and recovery. The study highlighted that integrating processes, technology, and people is fundamental for creating a secure and resilient digital environment. Thus, this work contributes to understanding strategic cybersecurity management as a vital component for protecting information and preserving institutional reputation in a challenging digital landscape.

Downloads

Download data is not yet available.

References

COBIT. COBIT 2019: Framework de Governança e Gestão de TI. ISACA, 2019.

HARRIS, Shon. CISSP All-in-One Exam Guide. 8. ed. McGraw-Hill, 2020.

ISO/IEC 27001. Information technology — Security techniques — Information security management systems — Requirements. International Organization for Standardization, 2013.

ISO/IEC 27005. Information technology — Security techniques — Information security risk management. International Organization for Standardization, 2018.

SANTOS, L.; MORAES, F. Segurança Cibernética: Fundamentos e Aplicações. São Paulo: Atlas, 2021.

STALLINGS, William. Computer Security: Principles and Practice. 4. ed. Pearson, 2019.

Published

2025-10-23

How to Cite