{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,29]],"date-time":"2026-05-29T18:37:27Z","timestamp":1780079847185,"version":"3.54.0"},"reference-count":62,"publisher":"Springer Science and Business Media LLC","issue":"3","license":[{"start":{"date-parts":[[2025,1,21]],"date-time":"2025-01-21T00:00:00Z","timestamp":1737417600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,21]],"date-time":"2025-01-21T00:00:00Z","timestamp":1737417600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Cluster Comput"],"published-print":{"date-parts":[[2025,6]]},"DOI":"10.1007\/s10586-024-04899-1","type":"journal-article","created":{"date-parts":[[2025,1,21]],"date-time":"2025-01-21T10:46:37Z","timestamp":1737456397000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Building a cyber risk treatment taxonomy"],"prefix":"10.1007","volume":"28","author":[{"given":"Isaac D.","family":"S\u00e1nchez-Garc\u00eda","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tom\u00e1s San","family":"Feliu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jose A.","family":"Calvo-Manzano","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2025,1,21]]},"reference":[{"key":"4899_CR1","doi-asserted-by":"publisher","first-page":"33","DOI":"10.1007\/978-3-319-23570-7_5","volume-title":"Cyber-Risk Management","author":"A Refsdal","year":"2015","unstructured":"Refsdal, A., Solhaug, B., St\u00f8len, K.: Cyber-Risk Management, pp. 33\u201347. Springer, Cham (2015). https:\/\/doi.org\/10.1007\/978-3-319-23570-7_5"},{"key":"4899_CR2","doi-asserted-by":"publisher","unstructured":"National Institute of Standards and Technology: Special Publication 800-30 Revision 1\u2014Guide for Conducting Risk Assessments. NIST Special Publication, no. September, p. 95 (2012) https:\/\/doi.org\/10.6028\/NIST.SP.800-30r1","DOI":"10.6028\/NIST.SP.800-30r1"},{"key":"4899_CR3","unstructured":"International Organization for Standardization: ISO IEC 27000 2018 Information technology\u2014Information security Management systems\u2014Overview and vocabulary. Geneva (2018)"},{"key":"4899_CR4","unstructured":"Security Standards Council: PCI DSS Quick Reference Guide (2018). www.pcisecuritystandards.org (Accessed February 23, 2024)"},{"key":"4899_CR5","doi-asserted-by":"publisher","unstructured":"European Union Agency For Cybersecurity: Interoperable EU Risk Management Framework (2022). https:\/\/doi.org\/10.2824\/07253","DOI":"10.2824\/07253"},{"key":"4899_CR6","doi-asserted-by":"publisher","unstructured":"Doynikova, E., Kotenko, I.: CVSS_based probabilistic risk assessment for cyber situational awarness and countermeasure selection. In: 2017 25th Euromicro International Conference on Parallel, Distributed and Network-Based Processing (2017). https:\/\/doi.org\/10.1109\/PDP.2017.44","DOI":"10.1109\/PDP.2017.44"},{"key":"4899_CR7","unstructured":"Gonzalez, G., Debar, H.: Selection of countermeasures against cyber attacks. US 10,419,474 B2 (2019). https:\/\/patentimages.storage.googleapis.com\/5e\/f9\/b5\/72fbeb0ea36d09\/US10419474.pdf. Accessed 8 May 2022"},{"key":"4899_CR8","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2019.101568","author":"LY Connolly","year":"2019","unstructured":"Connolly, L.Y., Wall, D.S.: The rise of crypto-ransomware in a changing cybercrime landscape: taxonomising countermeasures. Comput. Secur. (2019). https:\/\/doi.org\/10.1016\/j.cose.2019.101568","journal-title":"Comput. Secur."},{"key":"4899_CR9","doi-asserted-by":"publisher","unstructured":"Chaudhry, J.A., Rittenhouse, R.G.: Phishing: clabification and countermeasures. In: Proceedings\u20147th International Conference on Multimedia, Computer Graphics and Broadcasting, MulGraB 2015, Institute of Electrical and Electronics Engineers Inc., pp. 28\u201331. (2016). https:\/\/doi.org\/10.1109\/MulGraB.2015.17","DOI":"10.1109\/MulGraB.2015.17"},{"key":"4899_CR10","unstructured":"International Organization for Standardization: ISO 27002:2022. Information security, cybersecurity and privacy protection. https:\/\/www.iso.org\/standard\/75652.html. Accessed 29 Apr 2024"},{"key":"4899_CR11","doi-asserted-by":"publisher","unstructured":"NIST, \u201cSecurity and Privacy Controls for Information Systems and Organizations,\u201d Gaithersburg, MD, Sep. 2020. https:\/\/doi.org\/10.6028\/NIST.SP.800-53r5","DOI":"10.6028\/NIST.SP.800-53r5"},{"key":"4899_CR12","unstructured":"National Institute of Standards and Technology: NIST cybersecurity framework. In: Proceedings of the Annual ISA Analysis Division Symposium, vol. 535, pp. 9\u201325. (2018)"},{"key":"4899_CR13","unstructured":"Center for Internet Security: CIS Critical Security Controls\u00ae CIS Critical Security Controls (2021). www.cisecurity.org\/controls\/ (accessed November 11, 2023)."},{"key":"4899_CR14","unstructured":"Kaloroumakis, P.E., Smith, M.J.: Toward a Knowledge Graph of Cybersecurity Countermeasures, Technical report (2021). https:\/\/apps.dtic.mil\/sti\/citations\/AD1156977"},{"key":"4899_CR15","doi-asserted-by":"publisher","unstructured":"Neila, R., Rabai, L.B.A.: Deploying suitable countermeasures to solve the security problems within an e-learning environment. In: ACM International Conference Proceeding Series, Association for Computing Machinery, pp. 33\u201338. (2014). https:\/\/doi.org\/10.1145\/2659651.2659721","DOI":"10.1145\/2659651.2659721"},{"issue":"19","key":"4899_CR16","doi-asserted-by":"publisher","first-page":"6647","DOI":"10.3390\/s21196647","volume":"21","author":"SF Tan","year":"2021","unstructured":"Tan, S.F., Samsudin, A.: Recent technologies, security countermeasure and ongoing challenges of industrial internet of things (IIoT): a survey. Sensors 21(19), 6647 (2021). https:\/\/doi.org\/10.3390\/s21196647","journal-title":"Sensors"},{"issue":"9","key":"4899_CR17","doi-asserted-by":"publisher","first-page":"4484","DOI":"10.1002\/ece3.3941","volume":"8","author":"JSS Denton","year":"2018","unstructured":"Denton, J.S.S., Goolsby, E.W.: Measuring inferential importance of taxa using taxon influence indices. Ecol. Evol. 8(9), 4484\u20134494 (2018). https:\/\/doi.org\/10.1002\/ece3.3941","journal-title":"Ecol. Evol."},{"issue":"3","key":"4899_CR18","doi-asserted-by":"publisher","first-page":"103623","DOI":"10.1016\/j.im.2022.103623","volume":"59","author":"A Andersson","year":"2022","unstructured":"Andersson, A., Hedstr\u00f6m, K., Karlsson, F.: \u2018Standardizing information security\u2014a structurational analysis.\u2019 Inf. Manage. 59(3), 103623 (2022). https:\/\/doi.org\/10.1016\/j.im.2022.103623","journal-title":"Inf. Manage."},{"key":"4899_CR19","doi-asserted-by":"publisher","first-page":"102542","DOI":"10.1016\/j.ijinfomgt.2022.102542","volume":"66","author":"YK Dwivedi","year":"2022","unstructured":"Dwivedi, Y.K., et al.: Metaverse beyond the hype: multidisciplinary perspectives on emerging challenges, opportunities, and agenda for research, practice and policy. Int. J. Inf. Manage. 66, 102542 (2022). https:\/\/doi.org\/10.1016\/j.ijinfomgt.2022.102542","journal-title":"Int. J. Inf. Manage."},{"issue":"20","key":"4899_CR20","doi-asserted-by":"publisher","first-page":"3330","DOI":"10.3390\/electronics11203330","volume":"11","author":"E Altulaihan","year":"2022","unstructured":"Altulaihan, E., Almaiah, M.A., Aljughaiman, A.: Cybersecurity threats, countermeasures and mitigation techniques on the IoT: future research directions. Electronics (Basel) 11(20), 3330 (2022). https:\/\/doi.org\/10.3390\/electronics11203330","journal-title":"Electronics (Basel)"},{"issue":"12","key":"4899_CR21","doi-asserted-by":"publisher","first-page":"669","DOI":"10.18535\/ijsrm\/v9i12.ec04","volume":"9","author":"Y Perwej","year":"2021","unstructured":"Perwej, Y., Qamarabbas, S., Pratapdixit, J., Akhtar, N., Kumarjaiswal, A.: A systematic literature review on the cyber security. Int. J. Sci. Res. Manage. 9(12), 669\u2013710 (2021). https:\/\/doi.org\/10.18535\/ijsrm\/v9i12.ec04","journal-title":"Int. J. Sci. Res. Manage."},{"key":"4899_CR22","doi-asserted-by":"publisher","DOI":"10.1111\/risa.16629","author":"G Rabitti","year":"2024","unstructured":"Rabitti, G., Khorrami Chokami, A., Coyle, P., Cohen, R.D.: A taxonomy of cyber risk taxonomies. Risk Anal. (2024). https:\/\/doi.org\/10.1111\/risa.16629","journal-title":"Risk Anal."},{"issue":"16","key":"4899_CR23","doi-asserted-by":"publisher","first-page":"8080","DOI":"10.3390\/app12168080","volume":"12","author":"JH Pool","year":"2022","unstructured":"Pool, J.H., Venter, H.: A harmonized information security taxonomy for cyber physical systems. Appl. Sci. 12(16), 8080 (2022). https:\/\/doi.org\/10.3390\/app12168080","journal-title":"Appl. Sci."},{"key":"4899_CR24","unstructured":"Pankratz, K.: A taxonomy for cybersecurity control sets. In: A Taxonomy for Cybersecurity Control Sets. https:\/\/kent-pankratz.medium.com\/a-taxonomy-for-cybersecurity-control-sets-6529ba2c3a5f. Accessed 3 Nov 2024"},{"key":"4899_CR25","doi-asserted-by":"publisher","first-page":"103170","DOI":"10.1016\/j.cose.2023.103170","volume":"128","author":"ID S\u00e1nchez-Garc\u00eda","year":"2023","unstructured":"S\u00e1nchez-Garc\u00eda, I.D., Feliu Gilabert, T.S., Calvo-Manzano, J.A.: Countermeasures and their taxonomies for risk treatment in cybersecurity: a systematic mapping review. Comput. Secur. 128, 103170 (2023). https:\/\/doi.org\/10.1016\/j.cose.2023.103170","journal-title":"Comput. Secur."},{"key":"4899_CR26","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2015.03.007","author":"K Petersen","year":"2015","unstructured":"Petersen, K., Vakkalanka, S., Kuzniarz, L.: Guidelines for conducting systematic mapping studies in software engineering: an update. Inf. Softw. Technol. (2015). https:\/\/doi.org\/10.1016\/j.infsof.2015.03.007","journal-title":"Inf. Softw. Technol."},{"key":"4899_CR27","doi-asserted-by":"publisher","DOI":"10.1371\/journal.pone.0119929","author":"A Fernandez","year":"2015","unstructured":"Fernandez, A., et al.: Flooding and mental health: a systematic mapping review. Public Libr. Sci. (2015). https:\/\/doi.org\/10.1371\/journal.pone.0119929","journal-title":"Public Libr. Sci."},{"issue":"4","key":"4899_CR28","doi-asserted-by":"publisher","first-page":"683","DOI":"10.1007\/s41870-018-0108-1","volume":"11","author":"Anjana","year":"2019","unstructured":"Anjana, Singh, A.: Security concerns and countermeasures in cloud computing: a qualitative analysis. Int. J. Inf. Technol. (Singapore) 11(4), 683\u2013690 (2019). https:\/\/doi.org\/10.1007\/s41870-018-0108-1","journal-title":"Int. J. Inf. Technol. (Singapore)"},{"issue":"3","key":"4899_CR29","doi-asserted-by":"publisher","first-page":"355","DOI":"10.2478\/s13537-011-0024-y","volume":"1","author":"S Ramanauskaite","year":"2011","unstructured":"Ramanauskaite, S., Cenys, A.: Taxonomy of DoS attacks and their countermeasures. Open Comput. Sci. 1(3), 355\u2013366 (2011). https:\/\/doi.org\/10.2478\/s13537-011-0024-y","journal-title":"Open Comput. Sci."},{"key":"4899_CR30","doi-asserted-by":"publisher","unstructured":"ENISA: Compendium of risk management frameworks with potential interoperability (2022). https:\/\/doi.org\/10.2824\/75906","DOI":"10.2824\/75906"},{"key":"4899_CR31","doi-asserted-by":"publisher","unstructured":"NIST: NIST 800-53 (2022). https:\/\/doi.org\/10.6028\/NIST.SP.800-53Ar5","DOI":"10.6028\/NIST.SP.800-53Ar5"},{"key":"4899_CR32","unstructured":"Information Systems Audit and Control Association: COBIT 2019. 2018. www.isaca.org\/COBIT. Accessed 9 May 2022"},{"key":"4899_CR33","unstructured":"Bundesamt f\u00fcr Sicherheit in der Informationstechnik (BSI): IT-Grundschutz-Kompendium Edition 2019. Bonn Germany: BSI (2019). https:\/\/www.bsi.bund.de\/SharedDocs\/Downloads\/DE\/BSI\/Grundschutz\/IT-GSKompendium\/IT_Grundschutz_Kompendium_Edition2019.html#:~:text=Die%20Edition%202019%20des%20IT,f%C3%BCr%20die%20Edition%202019%20%C3%BCberarbeitet"},{"key":"4899_CR34","volume-title":"A Taxonomy to Compare SPI Frameworks","author":"CP Halvorsen","year":"2002","unstructured":"Halvorsen, C.P., Conradi, R.: A Taxonomy to Compare SPI Frameworks, vol. 4. Springer, Berlin (2002)"},{"key":"4899_CR35","unstructured":"International Electrotechnical Commission: IEC 62351-4:2018. https:\/\/webstore.iec.ch\/publication\/30079. . Accessed 19 Oct 2022"},{"key":"4899_CR36","doi-asserted-by":"publisher","first-page":"196","DOI":"10.1016\/j.jmsy.2023.03.009","volume":"68","author":"MH Rahman","year":"2023","unstructured":"Rahman, M.H., Wuest, T., Shafae, M.: Manufacturing cybersecurity threat attributes and countermeasures: review, meta-taxonomy, and use cases of cyberattack taxonomies. J. Manuf. Syst. 68, 196\u2013208 (2023). https:\/\/doi.org\/10.1016\/j.jmsy.2023.03.009","journal-title":"J. Manuf. Syst."},{"issue":"1","key":"4899_CR37","doi-asserted-by":"publisher","first-page":"33","DOI":"10.1145\/3184444.3184448","volume":"49","author":"R Baskerville","year":"2018","unstructured":"Baskerville, R., Rowe, F., Wolff, F.-C.: Integration of information systems and cybersecurity countermeasures. ACM SIGMIS Database: DATABASE Adv Inf Syst 49(1), 33\u201352 (2018). https:\/\/doi.org\/10.1145\/3184444.3184448","journal-title":"ACM SIGMIS Database: DATABASE Adv Inf Syst"},{"key":"4899_CR38","doi-asserted-by":"publisher","first-page":"8810","DOI":"10.1109\/ACCESS.2017.2740402","volume":"6","author":"G Gonzalez-Granadillo","year":"2017","unstructured":"Gonzalez-Granadillo, G., Rubio-Hernan, J., Garcia-Alfaro, J.: Using an event data taxonomy to represent the impact of cyber events as geometrical instances. IEEE Access 6, 8810\u20138828 (2017). https:\/\/doi.org\/10.1109\/ACCESS.2017.2740402","journal-title":"IEEE Access"},{"issue":"01","key":"4899_CR39","doi-asserted-by":"publisher","first-page":"97","DOI":"10.1142\/S0219622019300076","volume":"19","author":"A Ko","year":"2020","unstructured":"Ko, A., Gillani, S.: A research review and taxonomy development for decision support and business analytics using semantic text mining. Int. J. Inf. Technol. Decis. Mak. 19(01), 97\u2013126 (2020). https:\/\/doi.org\/10.1142\/S0219622019300076","journal-title":"Int. J. Inf. Technol. Decis. Mak."},{"key":"4899_CR40","doi-asserted-by":"publisher","unstructured":"Borges Hink, R.C., Goseva-Popstojanova, K.: Characterization of cyberattacks aimed at integrated industrial control and enterprise systems: a case study. In: Proceedings of IEEE International Symposium on High Assurance Systems Engineering, IEEE Computer Society, pp. 149\u2013156. (2016). https:\/\/doi.org\/10.1109\/HASE.2016.49","DOI":"10.1109\/HASE.2016.49"},{"key":"4899_CR41","doi-asserted-by":"publisher","unstructured":"Drivas, G., Chatzopoulou, A., Maglaras, L., Lambrinoudakis, C., Cook, A., Janicke, H.: A NIS directive compliant cybersecurity maturity assessment framework. In: 2020 IEEE 44th Annual Computers, Software, and Applications Conference (COMPSAC), IEEE, pp. 1641\u20131646. (2020). https:\/\/doi.org\/10.1109\/COMPSAC48688.2020.00-20","DOI":"10.1109\/COMPSAC48688.2020.00-20"},{"key":"4899_CR42","doi-asserted-by":"publisher","first-page":"100","DOI":"10.1007\/978-3-319-67383-7_8","volume-title":"Comparative Study of Cybersecurity Capability Maturity Models","author":"AM Rea-Guaman","year":"2017","unstructured":"Rea-Guaman, A.M., San Feliu, T., Calvo-Manzano, J.A., Sanchez-Garcia, I.D.: Comparative Study of Cybersecurity Capability Maturity Models, pp. 100\u2013113. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-67383-7_8"},{"key":"4899_CR43","unstructured":"ISACA: An Introduction to the Business Model for Information Security (2009). https:\/\/www.isaca.org (accessed March 10, 2024)"},{"key":"4899_CR44","unstructured":"International Organization for Standardization: ISO 27002 Standard. www.iso.org (accessed January 15, 2024)"},{"key":"4899_CR45","doi-asserted-by":"publisher","unstructured":"Veerappan, C.S., Keong, P.L.K., Tang, Z., Tan, F.: Taxonomy on malware evasion countermeasures techniques. In: 2018 IEEE 4th World Forum on Internet of Things (WF-IoT), IEEE, pp. 558\u2013563. (2018). https:\/\/doi.org\/10.1109\/WF-IoT.2018.8355202","DOI":"10.1109\/WF-IoT.2018.8355202"},{"key":"4899_CR46","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2017.01.006","volume-title":"Taxonomies in Software Engineering: A Systematic Mapping Study and a Revised Taxonomy Development Method","author":"M Usman","year":"2017","unstructured":"Usman, M., Britto, R., B\u00f6rstler, J., Mendes, E.: Taxonomies in Software Engineering: A Systematic Mapping Study and a Revised Taxonomy Development Method. Elsevier, Amsterdam (2017). https:\/\/doi.org\/10.1016\/j.infsof.2017.01.006"},{"key":"4899_CR47","doi-asserted-by":"publisher","unstructured":"Angermeier, D., Nieding, A., Eichler, J.: Supporting risk assessment with the systematic identification, merging, and validation of security goals. In: Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), pp. 82\u201395. (2017). https:\/\/doi.org\/10.1007\/978-3-319-57858-3_7","DOI":"10.1007\/978-3-319-57858-3_7"},{"key":"4899_CR48","doi-asserted-by":"publisher","DOI":"10.4192\/1577-8517-v17_2","author":"V Chakraborty","year":"2017","unstructured":"Chakraborty, V., Vasarhelyi, M.: A hybrid method for taxonomy creation. Int. J. Digit. Account. Res. (2017). https:\/\/doi.org\/10.4192\/1577-8517-v17_2","journal-title":"Int. J. Digit. Account. Res."},{"key":"4899_CR49","doi-asserted-by":"publisher","unstructured":"Joint Research Centre of the European Commission: A Proposal for a European Cybersecurity Taxonomy (2019). https:\/\/doi.org\/10.2760\/106002","DOI":"10.2760\/106002"},{"key":"4899_CR50","unstructured":"M. Whittaker and K. Breininger, \u201cTaxonomy development for knowledge management,\u201d World Libr. Inf. Congr. 74th IFLA Gen. Conf. Counc., pp. 1\u201310, 2008."},{"key":"4899_CR51","unstructured":"Oxford Learner\u2019s Dictionaries: Taxonomies definition. https:\/\/www.oxfordlearnersdictionaries.com\/definition\/english\/taxonomy (accessed August 14, 2023)."},{"issue":"1","key":"4899_CR52","doi-asserted-by":"publisher","first-page":"1","DOI":"10.4018\/JGIM.316833","volume":"31","author":"V Bolek","year":"2023","unstructured":"Bolek, V., Romanov\u00e1, A., Kor\u010dek, F.: The information security management systems in e-business. J. Glob. Inf. Manage. 31(1), 1\u201329 (2023). https:\/\/doi.org\/10.4018\/JGIM.316833","journal-title":"J. Glob. Inf. Manage."},{"issue":"5","key":"4899_CR53","doi-asserted-by":"publisher","first-page":"1015","DOI":"10.1108\/JEDT-08-2019-0201","volume":"18","author":"R Derradji","year":"2020","unstructured":"Derradji, R., Hamzi, R.: Multi-criterion analysis based on integrated process-risk optimization. J. Eng. Des. Technol. 18(5), 1015\u20131035 (2020). https:\/\/doi.org\/10.1108\/JEDT-08-2019-0201","journal-title":"J. Eng. Des. Technol."},{"key":"4899_CR54","doi-asserted-by":"crossref","unstructured":"International Organization for Standardization: ISO 31000 Risk Management\u2014Guidelines. https:\/\/www.iso.org\/obp\/ui#iso:std:iso:31000:ed-2:v1:es. Accessed 12 Mar 2021","DOI":"10.1007\/978-3-030-02006-4_314-1"},{"issue":"105","key":"4899_CR55","doi-asserted-by":"publisher","first-page":"4","DOI":"10.47460\/uct.v24i105.375","volume":"24","author":"MG Mancero Arias","year":"2020","unstructured":"Mancero Arias, M.G., Arroba Salto, I.M., Pazmi\u00f1o Enr\u00edquez, J.E.: Modelo de control interno para PYMES en base al informe COSO - ERM. Univ Cienc Tecnol 24(105), 4\u201311 (2020). https:\/\/doi.org\/10.47460\/uct.v24i105.375","journal-title":"Univ Cienc Tecnol"},{"key":"4899_CR56","unstructured":"The OWASP\u00ae Foundation: OWASP top 10. Top 10 Web Application Security Risks. https:\/\/owasp.org\/www-project-top-ten\/. Accessed 8 May 2022."},{"key":"4899_CR57","doi-asserted-by":"publisher","unstructured":"Huang, Y., Debnath, J., Iorga, M., Kumar, A., Xie, B.: CSAT: a user-interactive cyber security architecture tool based on NIST-compliance Security Controls for Risk Management. In: 2019 IEEE 10th Annual Ubiquitous Computing, Electronics & Mobile Communication Conference (UEMCON), IEEE, pp. 0697\u20130707. (2019). https:\/\/doi.org\/10.1109\/UEMCON47517.2019.8993090","DOI":"10.1109\/UEMCON47517.2019.8993090"},{"issue":"1","key":"4899_CR58","doi-asserted-by":"publisher","first-page":"395","DOI":"10.3390\/app13010395","volume":"13","author":"ID S\u00e1nchez-Garc\u00eda","year":"2022","unstructured":"S\u00e1nchez-Garc\u00eda, I.D., Mej\u00eda, J., San Feliu Gilabert, T.: Cybersecurity risk assessment: a systematic mapping review, proposal, and validation. Appl. Sci. 13(1), 395 (2022). https:\/\/doi.org\/10.3390\/app13010395","journal-title":"Appl. Sci."},{"issue":"6","key":"4899_CR59","doi-asserted-by":"publisher","first-page":"982","DOI":"10.1016\/j.jlp.2013.10.009","volume":"26","author":"HM Leith","year":"2013","unstructured":"Leith, H.M., Piper, J.W.: Identification and application of security measures for petrochemical industrial control systems. J. Loss Prev. Process Ind. 26(6), 982\u2013993 (2013). https:\/\/doi.org\/10.1016\/j.jlp.2013.10.009","journal-title":"J. Loss Prev. Process Ind."},{"key":"4899_CR60","doi-asserted-by":"publisher","first-page":"77","DOI":"10.1016\/j.cose.2016.10.009","volume":"65","author":"K Ruan","year":"2017","unstructured":"Ruan, K.: Introducing cybernomics: a unifying economic framework for measuring cyber risk. Comput. Secur. 65, 77\u201389 (2017). https:\/\/doi.org\/10.1016\/j.cose.2016.10.009","journal-title":"Comput. Secur."},{"issue":"5","key":"4899_CR61","doi-asserted-by":"publisher","first-page":"551","DOI":"10.1108\/ICS-02-2018-0020","volume":"26","author":"S Fenz","year":"2018","unstructured":"Fenz, S., Neubauer, T.: Ontology-based information security compliance determination and control selection on the example of ISO 27002. Inf. Comput. Secur. 26(5), 551\u2013567 (2018). https:\/\/doi.org\/10.1108\/ICS-02-2018-0020","journal-title":"Inf. Comput. Secur."},{"key":"4899_CR62","unstructured":"Yin, R.K.: Case Study Research and Applications, 6th edn. SAGE Publications, London (2018). https:\/\/lccn.loc.gov\/2017040835. Accessed 18 Feb 2024"}],"container-title":["Cluster Computing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-024-04899-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10586-024-04899-1\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10586-024-04899-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,20]],"date-time":"2025-05-20T21:52:48Z","timestamp":1747777968000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10586-024-04899-1"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,1,21]]},"references-count":62,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2025,6]]}},"alternative-id":["4899"],"URL":"https:\/\/doi.org\/10.1007\/s10586-024-04899-1","relation":{},"ISSN":["1386-7857","1573-7543"],"issn-type":[{"value":"1386-7857","type":"print"},{"value":"1573-7543","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,1,21]]},"assertion":[{"value":"27 May 2024","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"6 November 2024","order":2,"name":"revised","label":"Revised","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"10 November 2024","order":3,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"21 January 2025","order":4,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"We (the authors) hereby certify that, to the best of our knowledge, we have no relevant financial or nonfinancial relationships to disclose with respect to this manuscript and the related information.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}],"article-number":"205"}}