CTEM: The Next Big Thing or Just a Buzzword?: A comparative study of CTEM and NIST CSF 2.0 in modern cyber risk management
2025 (English)Independent thesis Advanced level (degree of Master (One Year)), 10 credits / 15 HE credits
Student thesis
Abstract [en]
The thesis "CTEM: The Next Big Thing or Just a Buzzword? - A comparative study of CTEM and NIST CSF 2.0 in modern cyber risk management" investigates Continuous Threat Exposure Management (CTEM) compared to the National Institute of Standards and Technology Cybersecurity Framework (NIST CSF) 2.0. Through a comparative analysis and interviews with cybersecurity professionals, the study aims to explore how CTEM can help organizations adopt a more continuous and adaptive approach to manage cybersecurity risks.
The results show that CTEM offers a dynamic and proactive approach to threat management, focusing on continuous monitoring, while NIST CSF 2.0 relies more on traditional methods. It also identifies similarities and differences between the frameworks, recognizing that the continuous approach can complement the NIST CSF 2.0. That integration can strengthen the comprehensive cybersecurity strategy of organizations that addresses current and emerging threats. A combination of CTEM and NIST CSF 2.0 addresses challenges such as management support, which are discussed in the discussion. The combination can lead to sustained resilience to cyber threats and ensure a safer digital environment with economic benefits for organizations.
Place, publisher, year, edition, pages
2025. , p. 40
Keywords [en]
Continuous Threat Exposure Management, CTEM, National Institute of Standards and Technology Cybersecurity Framework, NIST CSF 2.0, Cybersecurity, Framework
National Category
Other Computer and Information Science
Identifiers
URN: urn:nbn:se:hh:diva-56120OAI: oai:DiVA.org:hh-56120DiVA, id: diva2:1962315
External cooperation
Knowit Cybersecurity & Law
Subject / course
Digital Forensics
Educational program
Master's Programme in Network Forensics, 60 credits
Supervisors
Examiners
2025-06-032025-05-292025-10-01Bibliographically approved