Skip to content
Review Open access

Cybersecurity Challenges and Centralized Monitoring Solutions for e-Governance in Zambia: A Literature Review

Jul 2026 · International Journal of Electrical Engineering and Computer Science · 0 citations · 13 references

TL;DR

Some operational and technical challenges that affect the adoption of effective cybersecurity prac-tices within e-government infrastructures are identified and the importance of scalable, cost-effective, and integrated monitoring infrastructures to manage cybersecurity proactively in developing countries are highlighted.

Abstract

E-government digital platforms are often attacked by sophisticated cybersecurity threats because of the sensitive nature of the information and services they provide. The analysis finds that these systems have vulnerabilities due to fragmented security architectures, not enough skilled personnel, limited budgets, and reactive security approaches, particularly within developing countries such as Zambia. This study reviews existing research on cybersecurity challenges affecting e-government systems, focusing on Gov-ernment-to-Business (G2B) digital platforms in developing countries. It also examines established cyber-security frameworks, including Defence-in-Depth (DiD), NIST CSF, ISO/IEC 27001, and the Zero Trust model. The study also reviews the role of Centralized Security Monitoring Platforms (CSMPs) integrated with Intrusion Detection and Prevention Platforms (IDPPs) in improving threat visibility, event correla-tion, and coordinated incident response. A lightweight validation approach is carried out using a virtual-ized environment, which relies on open-source platforms such as pfSense, Suricata, and Wazuh to show how the centralization of monitoring increases situational awareness and correlates events to show the relevance of the proposed solution within a resource-constrained environment. The study further identi-fied some operational and technical challenges that affect the adoption of effective cybersecurity prac-tices within e-government infrastructures and highlights the importance of scalable, cost-effective, and integrated monitoring infrastructures to manage cybersecurity proactively in developing countries.

Read PDF

Similar papers

Review Open access Aug 2026

Design and Validation Framework for Multi-Level Cybersecurity and Privacy Protection in Modern Digital Infrastructures

The increasing complexity of cyber threats, interconnected technologies, and data-intensive digital services has exposed limitations in security strategies that depend on isolated controls. This study develops a multi-level cybersecurity and privacy framework that integrates complementary controls across physical, network, endpoint, application, data, identity and access management, monitoring and incident response, and human and policy domains. The framework was developed through structured synthesis of the ten cybersecurity and privacy studies reviewed in the source manuscript and alignment with established cybersecurity guidance. The revised model treats monitoring and incident response as a cross-cutting capability and privacy and governance as cross-cutting concerns. It further introduces a measurable evaluation structure based on layer-specific security indicators and an overall Multi-Level Cybersecurity Resilience Index. The framework is mapped to NIST Cybersecurity Framework 2.0, ISO/IEC 27001:2022, and Zero Trust principles. The resulting architecture provides a practical basis for coordinating preventive, detective, responsive, recovery, governance, and privacy controls. Because the source studies did not include primary empirical testing, the present manuscript does not claim empirical effectiveness; instead, it specifies a validation protocol using expert assessment and/or controlled simulation. This study contributes an integrated architectural model and a measurable evaluation approach for organizations seeking adaptive and resilient cybersecurity.

Unknown authors · 0 citations
Review Open access Aug 2026

Enhancing Government Cybersecurity through the Utilization of Automated and AI-Driven Techniques to Fortify Security Information and Event Management (SIEM) Systems

Security Information and Event Management (SIEM) systems are a key part of modern cybersecurity operations, especially in government settings where they are responsible for protecting sensitive data and making sure that important national services keep running. Even though traditional SIEM platforms are used a lot, they mostly use rule-based detection methods and manual incident response workflows. This makes it take longer to contain threats and keeps the false positive rate high. This paper systematically analyzes the operational difficulties encountered during SIEM implementations at the General Administration of Government Computer (GAGC) and the Palestinian Computer Emergency Response Team (PALCERT), both functioning under the Ministry of Telecommunications and Information Technology in Palestine. A mixed-methods research methodology—incorporating semi-structured expert interviews, focus group discussions, structured surveys, and quantitative log analysis—is utilized to assess current operational constraints and system limitations. Based on these results, we suggest a better AI-driven SIEM framework that combines machine learning-based threat detection with an automated incident response layer that follows security playbooks that have already been set up. Experimental assessment utilizing simulated cyberattack scenarios indicates statistically significant enhancements: detection accuracy rose from 79.1% to 91.5%, the false positive rate diminished from 32.4% to 20.2%, and the average incident response time decreased from 18.7 to 11.0 minutes, reflecting a 41% reduction. These results show that adding AI and automation to SIEM operations can make national cybersecurity much stronger, make analysts less tired, and make government digital infrastructure more resilient overall.

Mohammed AbuTaha · 0 citations
Review Open access 2024

Cybersecurity Frameworks for Digital Financial Institutions

Digital transformation has been a game-changer for financial institutions, driving the bank industry's evolution into a more real-time, cloud-based, mobile, and AI-enabled financial landscape. While all these technological developments have boosted operational efficiency and customer service, they have also created new opportunities for cyber criminals to attack financial organizations with powerful and sophisticated means like ransomware, phishing, insider threats, Advanced Persistent Threats (APTs), Distributed Denial-of-Service (DDoS) attacks, identity theft, and financial fraud. This has given rise to the need for extensive cyber security systems to be a strategic necessity and not a technical necessity. In this paper, the authors explore modern approaches to cybersecurity frameworks for digital financial institutions, reviewing methodologies for assessing risk, governance of security, regulatory compliance, and innovations like Artificial Intelligence, Machine Learning, Blockchain, and Zero Trust Architecture. The study provides an overview of existing cybersecurity frameworks such as the NIST Cybersecurity Framework, ISO/IEC 27001, COBIT and PCI DSS, along with financial regulatory frameworks. In addition, a conceptual framework is suggested for enhancing cyber-resilience based on continuous monitoring, threat intelligence, automated incident response, and adaptive security controls. The findings have shown that the combination of intelligent security solutions and a standardized governance model not only increases the resilience of the organisation, but also reduces cyber risks, facilitates compliance with regulatory requirements and safeguard the trust of customers. The proposed framework offers a scalable and proactive strategy for financial institutions to address the escalating cyber threats in the ever-engaging digital landscape.

Vladimir Glushkov, Victor Glushkov · 0 citations
Open access Aug 2026

NIST-Based Cybersecurity Risk Management for Mitigating Customer Data Breaches and Cyber Threats in Banking

The rapid digitalization of business processes has heightened organizational vulnerability to cybersecurity threats, particularly customer data breaches, unauthorized access, malware, phishing, and cyberattacks. These threats can compromise sensitive information, disrupt operations, cause financial losses, and erode customer trust. This study aims to examine the implementation of the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) for mitigating customer data breaches and cybersecurity threats. A qualitative research approach is employed to analyze cybersecurity risks, vulnerabilities, security controls, and risk mitigation practices in accordance with the NIST RMF. The framework encompasses a systematic process for categorizing information systems, selecting and implementing security controls, assessing control effectiveness, authorizing systems, and continuously monitoring risks. The results indicate that a NIST-based approach can assist organizations in identifying and prioritizing cybersecurity risks, strengthening data protection mechanisms, enhancing incident readiness, and optimizing continuous security monitoring. The findings suggest that strengthening customer data protection requires a holistic approach integrating technological safeguards, organizational governance, employee awareness, risk assessment, and effective incident response mechanisms. This study contributes to the cybersecurity risk management literature by proposing a structured approach to strengthening organizational resilience against customer data breaches and evolving cyber threats.

M. B. Legowo, Budi Indiarto, Adzrani Haura Badzlinaya Novianto et al. · 0 citations
Review 2026

Components and Utilities of Cybersecurity

This paper examines the multifaceted field of cybersecurity, covering key domains such as network, information, cloud, endpoint, and application security, as well as cryptography, ethical hacking, security operations, and emerging technologies like AI/ML. We review current literature, industry standards, and real-world case studies to analyze best practices and challenges across these domains. Emphasis is placed on evolving threat landscapes including ransomware, phishing, and supply-chain attacks, and the regulatory frameworks (GDPR, HIPAA, CCPA) and security standards (NIST CSF, ISO/IEC 27001) that guide organisational defences. We discuss the role of incident response and threat intelligence, and outline future trends such as AI-driven threats and defences, quantum-resistant cryptography, and zero-trust architectures. This comprehensive survey provides industry-level insights and strategic guidance for practitioners, emphasising defence-in-depth and continuous improvement to protect digital assets.

Sunil Kumar Upadhyay, Sanjeev Kumar · 0 citations
Conference Jul 2026

OT Cybersecurity: From Perimeter Security to Zero Trust: An AI-Governed OT Cybersecurity Architecture for Industrial Systems

The progressive convergence of Information Technology (IT) and Operational Technology (OT) environments has introduced new cybersecurity challenges for industrial and critical infrastructure systems. This work presents a generalized OT cybersecurity architecture that combines the Purdue reference model with Zero Trust principles to enforce strict segmentation, continuous verification, and controlled information flows across IT/OT boundaries. The architecture incorporates Artificial Intelligence (AI)-driven monitoring to support anomaly detection, contextual risk assessment, and automated response mechanisms under operational constraints. Additionally, a governance and assurance layer is discussed, aligning AI-enabled security functions with recognized risk management frameworks and auditable controls to ensure trustworthiness, resilience, and operational sustainability in high-impact industrial deployments. The proposal is further contextualized with prior AI-RMFgoverned IoT-as-a-Service and OWASP ML05 middleware contributions that address AI-enabled IoT security, model protection, and governance requirements.

Yair Rivera Julio, Ángel D. Pinto-Mangones, Frank A. Ibarra et al. · 0 citations