ACIS 2024 Proceedings

Abstract

There are many cybersecurity standards and frameworks, each representing the interests of different communities. While these standards and frameworks are rich sources of information, they are often complex, overlapping, scattered across different websites, hard to compare, subscription-based, and unstructured. For smaller businesses with limited resources, navigating these complexities in a rapidly evolving cyber threat landscape is particularly challenging. To address these challenges, industry-academia research partners collaborated to collocate cybersecurity standards and frameworks relevant to Australian businesses into a knowledge graph. This graph structures the information and describes both explicit and implicit semantic connections. This paper introduces the STANDFRAM method for designing, building, and evaluating a standards and frameworks knowledge graph. The goal is to extend its use beyond the originating communities. The STANDFRAM method was evaluated by experts, and the Knowledge Graph was assessed by users to determine the utility of the developed artifacts.

Share

COinS