TY - JOUR
T1 - A comprehensive review of cyber security and current practices in global mining critical infrastructure
AU - Barkat Ullah, Abu
AU - Ma, Wanli
AU - Ahmed, Mohiuddin
AU - Rashid, Bazlur
AU - Saeed, Munir Ahmad
AU - Arshad, Omer
AU - Raghav, Utkarsh
N1 - Publisher Copyright:
© 2025 University of Canberra. Published by Informa UK Limited, trading as Taylor & Francis Group.
PY - 2025/2/27
Y1 - 2025/2/27
N2 - The purpose of the study is to explore the reasons behind the low uptake of Information Security Management Standards (ISMS), Asset Management, and Business Continuity Plans despite increasing cyber threats to the mining sector. Mining companies need to modernize and automate to keep up with the ‘Fourth Industrial Revolution’, driven by disruptive technology, forcing systems and technologies to become more integrated, increasing cyber attack threats. To address this, we conducted a literature review analyzing the mining industry across various regions. The research is based on a qualitative analysis of diversified literature. The results highlighted factors behind the low uptake of ISMS standards: lack of regulatory requirements, low awareness of ISO/IEC 27001 standards, shortage of IT skills and expertise, lack of senior management engagement, and reliance on insurance to mitigate cyber threats. The results suggest mining companies are gradually realizing the potential consequences of cyber threats and are considering formulating a framework to protect the industry from cyber attacks.
AB - The purpose of the study is to explore the reasons behind the low uptake of Information Security Management Standards (ISMS), Asset Management, and Business Continuity Plans despite increasing cyber threats to the mining sector. Mining companies need to modernize and automate to keep up with the ‘Fourth Industrial Revolution’, driven by disruptive technology, forcing systems and technologies to become more integrated, increasing cyber attack threats. To address this, we conducted a literature review analyzing the mining industry across various regions. The research is based on a qualitative analysis of diversified literature. The results highlighted factors behind the low uptake of ISMS standards: lack of regulatory requirements, low awareness of ISO/IEC 27001 standards, shortage of IT skills and expertise, lack of senior management engagement, and reliance on insurance to mitigate cyber threats. The results suggest mining companies are gradually realizing the potential consequences of cyber threats and are considering formulating a framework to protect the industry from cyber attacks.
KW - critical infrastructure
KW - cyber security
KW - Global mining
KW - information security management standards business continuity
KW - literature review
UR - http://www.scopus.com/inward/record.url?scp=86000643838&partnerID=8YFLogxK
U2 - 10.1080/23742917.2025.2475563
DO - 10.1080/23742917.2025.2475563
M3 - Review article
AN - SCOPUS:86000643838
SN - 2374-2917
SP - 1
EP - 27
JO - Journal of Cyber Security Technology
JF - Journal of Cyber Security Technology
ER -