Adoption of cybersecurity policies by local governments 2020

This paper should be of interest to the readers of this journal because it addresses a subject that has received little scholarly attention; namely, local government cybersecurity. The U.S. has over 90,000 units of local government, of which almost 39,000 are “general purpose” units (i.e., municipal...

Full description

Saved in:
Bibliographic Details
Main Authors: Donald F. Norris PhD, Laura K. Mateczun JD
Format: Article
Language:English
Published: Kennesaw State University 2023-10-01
Series:Journal of Cybersecurity Education, Research & Practice
Online Access:https://digitalcommons.kennesaw.edu/jcerp/vol2023/iss2/9/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1849430272282460160
author Donald F. Norris PhD
Laura K. Mateczun JD
author_facet Donald F. Norris PhD
Laura K. Mateczun JD
author_sort Donald F. Norris PhD
collection DOAJ
description This paper should be of interest to the readers of this journal because it addresses a subject that has received little scholarly attention; namely, local government cybersecurity. The U.S. has over 90,000 units of local government, of which almost 39,000 are “general purpose” units (i.e., municipalities, counties, towns and townships). On average, these governments do not practice cybersecurity effectively (Norris, et al., 2019 and 2020). One possible reason is that they do not adopt and/or implement highly recommended cybersecurity policies. In this paper, we examine local government adoption or lack of adoption of cybersecurity policies using data from three surveys. Norris, et al, 2019 & 2020; Hatcher, et al., 2020; and Norris and Mateczun, 2023. It will probably not be surprising that our first finding is that, by and large, local governments still do a poor good job of adopting and implementing cybersecurity policies. Thus, our first recommendation is that these governments must take whatever actions are needed to ensure high levels of cybersecurity. If they do not, the consequences will be painful and costly, as demonstrated by examples presented in the text. Among these actions, we next recommend that local governments adopt and effectively implement the highly recommended cybersecurity policies discussed in the concluding section. Last, as we have recommended previously, we again call upon local governments to create and maintain within their organizations a culture of cybersecurity – one in which all parties in these governments fully understand and support cybersecurity at the highest levels in their governments.
format Article
id doaj-art-9cf6fcd8c80d4c90878377febe6eb53c
institution Kabale University
issn 2472-2707
language English
publishDate 2023-10-01
publisher Kennesaw State University
record_format Article
series Journal of Cybersecurity Education, Research & Practice
spelling doaj-art-9cf6fcd8c80d4c90878377febe6eb53c2025-08-20T03:28:04ZengKennesaw State UniversityJournal of Cybersecurity Education, Research & Practice2472-27072023-10-0120232Adoption of cybersecurity policies by local governments 2020Donald F. Norris PhD0Laura K. Mateczun JD1University of Maryland, Baltimore CountyUniversity of Maryland, Baltimore CountyThis paper should be of interest to the readers of this journal because it addresses a subject that has received little scholarly attention; namely, local government cybersecurity. The U.S. has over 90,000 units of local government, of which almost 39,000 are “general purpose” units (i.e., municipalities, counties, towns and townships). On average, these governments do not practice cybersecurity effectively (Norris, et al., 2019 and 2020). One possible reason is that they do not adopt and/or implement highly recommended cybersecurity policies. In this paper, we examine local government adoption or lack of adoption of cybersecurity policies using data from three surveys. Norris, et al, 2019 & 2020; Hatcher, et al., 2020; and Norris and Mateczun, 2023. It will probably not be surprising that our first finding is that, by and large, local governments still do a poor good job of adopting and implementing cybersecurity policies. Thus, our first recommendation is that these governments must take whatever actions are needed to ensure high levels of cybersecurity. If they do not, the consequences will be painful and costly, as demonstrated by examples presented in the text. Among these actions, we next recommend that local governments adopt and effectively implement the highly recommended cybersecurity policies discussed in the concluding section. Last, as we have recommended previously, we again call upon local governments to create and maintain within their organizations a culture of cybersecurity – one in which all parties in these governments fully understand and support cybersecurity at the highest levels in their governments.https://digitalcommons.kennesaw.edu/jcerp/vol2023/iss2/9/
spellingShingle Donald F. Norris PhD
Laura K. Mateczun JD
Adoption of cybersecurity policies by local governments 2020
Journal of Cybersecurity Education, Research & Practice
title Adoption of cybersecurity policies by local governments 2020
title_full Adoption of cybersecurity policies by local governments 2020
title_fullStr Adoption of cybersecurity policies by local governments 2020
title_full_unstemmed Adoption of cybersecurity policies by local governments 2020
title_short Adoption of cybersecurity policies by local governments 2020
title_sort adoption of cybersecurity policies by local governments 2020
url https://digitalcommons.kennesaw.edu/jcerp/vol2023/iss2/9/
work_keys_str_mv AT donaldfnorrisphd adoptionofcybersecuritypoliciesbylocalgovernments2020
AT laurakmateczunjd adoptionofcybersecuritypoliciesbylocalgovernments2020