DEVELOPING A COMPREHENSIVE INFORMATION SECURITY RISK MANAGEMENT FRAMEWORK FOR SELECTED ETHIOPIAN HIGER EDUCATION INSTITUTIONS

Show simple item record

dc.contributor.author RUON KUETH BUM UNDER THE SUPERVISION OF: - Principal Advisor: Kibreab Adane (Ph.D.
dc.date.accessioned 2025-10-24T07:26:22Z
dc.date.available 2025-10-24T07:26:22Z
dc.date.issued 2025-06
dc.identifier.uri http://hdl.handle.net/123456789/2617
dc.description.abstract The increasing reliance on digital technologies in Ethiopian Higher Education Institutions (HEIs) has introduced significant information security challenges, including data breaches, cyber threats, and weak governance structures. Existing security risk management frameworks often fail to address the unique vulnerabilities of HEIs in Ethiopia. This research develops a Comprehensive Information Security Risk Management Framework (CISRMF) tailored to the selected Ethiopian HEIs, integrating international best practices with local institutional needs. A mixed methods approach was employed, involving surveys, interviews, and technical observations to collect data from key stakeholders, including ICT and academic staff. Using a purposive sampling technique, data was gathered from selected public universities to ensure diverse institutional representation. The study identifies major security gaps, such as low cybersecurity awareness, lack of formal policies, and insufficient risk mitigation strategies. The proposed CISRMF provides a structured approach for risk identification, assessment, mitigation, and continuous monitoring, enhancing HEIs' resilience against security threats. The framework was further validated by domain experts to assess its effectiveness, usability, and adaptability to HEI environments. The findings contribute to improving cybersecurity strategies in Ethiopian HEIs and offer actionable recommendations for policymakers, administrators, and IT professionals. This study serves as a foundation for future research on developing scalable and adaptable security frameworks for academic institutions facing similar challenge en_US
dc.subject Information Security, Risk Management, Higher Education Institutions, Cybersecurity Framework, Ethiopian Universities. en_US
dc.title DEVELOPING A COMPREHENSIVE INFORMATION SECURITY RISK MANAGEMENT FRAMEWORK FOR SELECTED ETHIOPIAN HIGER EDUCATION INSTITUTIONS en_US
dc.type Thesis en_US


Files in this item

This item appears in the following Collection(s)

Show simple item record

Search AMU IR


Advanced Search

Browse

My Account