Research Article

Risk Analysis-based Decision Support System for Designing Cybersecurity of Information Technology

Authors

  • Barna Biswas Department of Information Technology, Westcliff University, California 90020, USA
  • Sadia Sharmin Department of Business Administration, International American University, 3440 Wilshire Blvd STE 1000, Los Angeles, CA 90010, United States
  • Md Azad Hossain Department of Business Administration, International American University, 3440 Wilshire Blvd STE 1000, Los Angeles, CA 90010, United States
  • Mohammad Zahidul Alam Department of Information Technology, Westcliff University, 17877 Von Karman Ave 4th Floor, Irvine, CA 92614, United States
  • Md Imran Sarkar Department of Information Technology, Westcliff University, 17877 Von Karman Ave 4th Floor, Irvine, CA 92614, United States

Abstract

Evaluating risks is essential for ensuring security preparedness from the perspective of technology and information security management. The proposed project aims to develop an IT security system grounded in risk analysis to create a cybersecurity decision support model. In this study, a public retail corporation with over 60 subsidiaries and an on-premises and cloud-based information technology ecosystem was examined. The proposed model focuses on reducing the security threats to the retail industry by acquiring the optimal security system. In this model, the risk was analyzed using the eight steps of the OCTAVE Allegro method. Based on the OCTAVE Allegro method, the proposed model yielded effective results in reducing security threats and demonstrated a correlation between risk and the importance of cybersecurity compliance evaluations in addressing these threats. Furthermore, this study contributed to strategic policymakers by providing recommendations for decision support in cyber security. The recommendations were designed to determine the most effective steps in the process of developing the security system of information technology. In addition, the risk analysis and evaluation of cybersecurity compliance in this research can assist businesses in formulating policies that will develop capable and efficient information technology security systems.

Article information

Journal

Journal of Business and Management Studies

Volume (Issue)

6 (5)

Pages

13-22

Published

2024-08-29

How to Cite

Biswas, B., Sharmin, S., Hossain, M. A., Alam, M. Z., & Sarkar, M. I. (2024). Risk Analysis-based Decision Support System for Designing Cybersecurity of Information Technology. Journal of Business and Management Studies, 6(5), 13–22. https://doi.org/10.32996/jbms.2024.5.6.3

Downloads

Keywords:

Decision support system, Information technology, Cybersecurity, OCTAVE Allegro