A Systematic Literature Review of Cyber Security Monitoring in Maritime

In recent years, many cyber incidents have occurred in the maritime sector, targeting the information technology (IT) and operational technology (OT) infrastructure. One of the key approaches for handling cyber incidents is cyber security monitoring, which aims at timely detection of cyber attacks w...

Full description

Saved in:
Bibliographic Details
Main Authors: Risto Vaarandi, Leonidas Tsiopoulos, Gabor Visky, Muaan Ur Rehman, Hayretdin Bahsi
Format: Article
Language:English
Published: IEEE 2025-01-01
Series:IEEE Access
Subjects:
Online Access:https://ieeexplore.ieee.org/document/10988791/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1850261656398987264
author Risto Vaarandi
Leonidas Tsiopoulos
Gabor Visky
Muaan Ur Rehman
Hayretdin Bahsi
author_facet Risto Vaarandi
Leonidas Tsiopoulos
Gabor Visky
Muaan Ur Rehman
Hayretdin Bahsi
author_sort Risto Vaarandi
collection DOAJ
description In recent years, many cyber incidents have occurred in the maritime sector, targeting the information technology (IT) and operational technology (OT) infrastructure. One of the key approaches for handling cyber incidents is cyber security monitoring, which aims at timely detection of cyber attacks with automated methods. Although several literature review papers have been published in the field of maritime cyber security, none of the previous studies has focused on cyber security monitoring. The current paper addresses this research gap and surveys the methods, algorithms, tools and architectures used for cyber security monitoring in the maritime sector. For the survey, a systematic literature review of cyber security monitoring studies is conducted following the Preferred Reporting Items for Systematic reviews and Meta-Analyses (PRISMA) protocol. The first contribution of this paper is the bibliometric analysis of related literature and the identification of the main research themes in previous works. For that purpose, the paper presents a taxonomy for existing studies which highlights the main properties of maritime cyber security monitoring research. The second contribution of this paper is an in-depth analysis of previous works and the identification of research gaps and limitations in existing literature. The gaps and limitations include several dataset and evaluation issues and a number of understudied research topics. Based on these findings, the paper outlines future research directions for cyber security monitoring in the maritime field.
format Article
id doaj-art-c742a2d4d4794fee9667975e7fcff538
institution OA Journals
issn 2169-3536
language English
publishDate 2025-01-01
publisher IEEE
record_format Article
series IEEE Access
spelling doaj-art-c742a2d4d4794fee9667975e7fcff5382025-08-20T01:55:21ZengIEEEIEEE Access2169-35362025-01-0113853078532910.1109/ACCESS.2025.356738510988791A Systematic Literature Review of Cyber Security Monitoring in MaritimeRisto Vaarandi0https://orcid.org/0000-0001-7781-5863Leonidas Tsiopoulos1https://orcid.org/0000-0002-3994-3810Gabor Visky2https://orcid.org/0000-0003-0416-3985Muaan Ur Rehman3https://orcid.org/0009-0000-2656-0127Hayretdin Bahsi4https://orcid.org/0000-0001-8882-4095Department of Software Science, Centre for Digital Forensics and Cyber Security, Tallinn University of Technology, Tallinn, EstoniaDepartment of Software Science, Centre for Digital Forensics and Cyber Security, Tallinn University of Technology, Tallinn, EstoniaDepartment of Software Science, Centre for Digital Forensics and Cyber Security, Tallinn University of Technology, Tallinn, EstoniaDepartment of Software Science, Centre for Digital Forensics and Cyber Security, Tallinn University of Technology, Tallinn, EstoniaDepartment of Software Science, Centre for Digital Forensics and Cyber Security, Tallinn University of Technology, Tallinn, EstoniaIn recent years, many cyber incidents have occurred in the maritime sector, targeting the information technology (IT) and operational technology (OT) infrastructure. One of the key approaches for handling cyber incidents is cyber security monitoring, which aims at timely detection of cyber attacks with automated methods. Although several literature review papers have been published in the field of maritime cyber security, none of the previous studies has focused on cyber security monitoring. The current paper addresses this research gap and surveys the methods, algorithms, tools and architectures used for cyber security monitoring in the maritime sector. For the survey, a systematic literature review of cyber security monitoring studies is conducted following the Preferred Reporting Items for Systematic reviews and Meta-Analyses (PRISMA) protocol. The first contribution of this paper is the bibliometric analysis of related literature and the identification of the main research themes in previous works. For that purpose, the paper presents a taxonomy for existing studies which highlights the main properties of maritime cyber security monitoring research. The second contribution of this paper is an in-depth analysis of previous works and the identification of research gaps and limitations in existing literature. The gaps and limitations include several dataset and evaluation issues and a number of understudied research topics. Based on these findings, the paper outlines future research directions for cyber security monitoring in the maritime field.https://ieeexplore.ieee.org/document/10988791/Cyber security monitoring in maritimecyber security monitoringmaritime cyber securitymaritimeliterature review
spellingShingle Risto Vaarandi
Leonidas Tsiopoulos
Gabor Visky
Muaan Ur Rehman
Hayretdin Bahsi
A Systematic Literature Review of Cyber Security Monitoring in Maritime
IEEE Access
Cyber security monitoring in maritime
cyber security monitoring
maritime cyber security
maritime
literature review
title A Systematic Literature Review of Cyber Security Monitoring in Maritime
title_full A Systematic Literature Review of Cyber Security Monitoring in Maritime
title_fullStr A Systematic Literature Review of Cyber Security Monitoring in Maritime
title_full_unstemmed A Systematic Literature Review of Cyber Security Monitoring in Maritime
title_short A Systematic Literature Review of Cyber Security Monitoring in Maritime
title_sort systematic literature review of cyber security monitoring in maritime
topic Cyber security monitoring in maritime
cyber security monitoring
maritime cyber security
maritime
literature review
url https://ieeexplore.ieee.org/document/10988791/
work_keys_str_mv AT ristovaarandi asystematicliteraturereviewofcybersecuritymonitoringinmaritime
AT leonidastsiopoulos asystematicliteraturereviewofcybersecuritymonitoringinmaritime
AT gaborvisky asystematicliteraturereviewofcybersecuritymonitoringinmaritime
AT muaanurrehman asystematicliteraturereviewofcybersecuritymonitoringinmaritime
AT hayretdinbahsi asystematicliteraturereviewofcybersecuritymonitoringinmaritime
AT ristovaarandi systematicliteraturereviewofcybersecuritymonitoringinmaritime
AT leonidastsiopoulos systematicliteraturereviewofcybersecuritymonitoringinmaritime
AT gaborvisky systematicliteraturereviewofcybersecuritymonitoringinmaritime
AT muaanurrehman systematicliteraturereviewofcybersecuritymonitoringinmaritime
AT hayretdinbahsi systematicliteraturereviewofcybersecuritymonitoringinmaritime