The ICRIM framework: an integrated conceptual model of cyber resilience indicators

Abstract Cyber resilience measurement remains conceptually fragmented across technical, organizational, and human-oriented research traditions. Existing approaches differ in terminology, level of analysis, form of operationalization, and evidence basis, while indicators are often not clearly distinguished from the metrics used to assess them. This study conducts a structured, theory-informed conceptual synthesis of 33 publications issued between 2011 and 2024 to examine how cyber resilience indicators have been conceptualized, operationalized, demonstrated, and validated. Using the a priori theory-informed structure described in the methodology, the analysis organizes the reviewed indicator families into three interdependent domains: technical, organizational, and socio-psychological and relational. Within the corpus, technical contributions typically use mathematical, temporal, structural, or probabilistic metrics. Organizational contributions rely mainly on maturity criteria, questionnaires, expert judgment, mission-oriented models, or hybrid approaches. Socio-psychological and relational constructs generally appear within broader cognitive, social, workforce, or organizational assessment structures rather than as standalone cyber resilience measures. Based on this synthesis, the study proposes the Integrated Cyber Resilience Indicators Model (ICRIM), a non-hierarchical conceptual structure for organizing heterogeneous indicator families, distinguishing indicators from operational metrics, and clarifying cross-domain relationships. ICRIM is not presented as a validated assessment instrument and does not prescribe universal metrics, weights, thresholds, or scoring procedures. Its contribution is to provide a transparent analytical basis for the future development and empirical testing of context-appropriate cyber resilience measures.

Authors

Institutions

Publication Details

Journal
International Journal of Information Security
Published
2026-10-07
DOI
https://doi.org/10.1007/s10207-026-01341-y
Primary Topic
Information and Cyber Security
Type
article
Field-Weighted Citation Impact
0.00
Controls
|||
ALL TIME
JAN
FEB
MAR
APR
MAY
JUN
JUL
AUG
SEP
OCT
article

The ICRIM framework: an integrated conceptual model of cyber resilience indicators

Vassiliadis Savvas, Vasiliki Tzavara
International Journal of Information Security
Information and Cyber Security
article

The ICRIM framework: an integrated conceptual model of cyber resilience indicators

Vassiliadis Savvas, Vasiliki Tzavara
article en

Abstract

Abstract Cyber resilience measurement remains conceptually fragmented across technical, organizational, and human-oriented research traditions. Existing approaches differ in terminology, level of analysis, form of operationalization, and evidence basis, while indicators are often not clearly distinguished from the metrics used to assess them. This study conducts a structured, theory-informed conceptual synthesis of 33 publications issued between 2011 and 2024 to examine how cyber resilience indicators have been conceptualized, operationalized, demonstrated, and validated. Using the a priori theory-informed structure described in the methodology, the analysis organizes the reviewed indicator families into three interdependent domains: technical, organizational, and socio-psychological and relational. Within the corpus, technical contributions typically use mathematical, temporal, structural, or probabilistic metrics. Organizational contributions rely mainly on maturity criteria, questionnaires, expert judgment, mission-oriented models, or hybrid approaches. Socio-psychological and relational constructs generally appear within broader cognitive, social, workforce, or organizational assessment structures rather than as standalone cyber resilience measures. Based on this synthesis, the study proposes the Integrated Cyber Resilience Indicators Model (ICRIM), a non-hierarchical conceptual structure for organizing heterogeneous indicator families, distinguishing indicators from operational metrics, and clarifying cross-domain relationships. ICRIM is not presented as a validated assessment instrument and does not prescribe universal metrics, weights, thresholds, or scoring procedures. Its contribution is to provide a transparent analytical basis for the future development and empirical testing of context-appropriate cyber resilience measures.

International Journal of Information SecurityVol. 25(6)
University of West Attica (GR)
Openalex Percentile: Top 5%
Information and Cyber Security
AI Navigator

Ask Laika to Summarize, Analyze, and Connect papers live on the map.

Summarize Papers & Methodologies

Extract key findings, datasets, and comparative methods across publications.

Benchmark Rankings & Visual Analytics

Rank top research institutions, authors, funders, topics, and journals by Field-Weighted Citation Impact (FWCI) and paper volume with instant charts.

Connect Distant Disciplines

Bridge topological clusters on the map to find hidden collaborative intersections.

The ICRIM framework: an integrated conceptual model of cyber resilience indicators — Vassiliadis Savvas, Vasiliki Tzavara · International Journal of Information Security (2026) | TGRS Research Map | TGRS