Servicios Personalizados
Revista
Articulo
Indicadores
Citado por SciELO
Accesos
Links relacionados
Similares en
SciELO
Compartir
Enfoque UTE
versión On-line ISSN 1390-6542versión impresa ISSN 1390-9363
Resumen
BUSTAMANTE1, Shonerly; CASTANEDA, Pedro y RODRIGUEZ, Ciro. Challenges of information security management in the industrial sector: A systematic review. Enfoque UTE [online]. 2025, vol.16, n.4, pp.9-18. ISSN 1390-6542. https://doi.org/10.29019/enfoqueute.1152.
Currently, in the industrial sector, technology can significantly increase productivity and efficiency. However, this advancement also generates multiple challenges related to information security that must be addressed. This systematic review aimed to analyze these challenges in information security management, focusing on three specific aspects: protection models and methodologies, factors that generate vulnerabilities in industrial control systems (ICS), and cyber risks that affect the supply chain. To this end, 45 articles published in journals indexed in databases such as Scopus, EBSCO and ScienceDirect over the last four years were examined. The results indicate that approaches based on Zero Trust, Shapley Additive Explanations (SHAP), Evolutionary Multi-Objective Optimization (EMO) algorithms, and the use of the Industrial Internet of Things (IIoT) offer greater effectiveness in protecting information. In addition, the following were identified as the main vulnerability factors in ICS: excessive connectivity, the use of obsolete operating systems, uncontrolled physical access, incorrect configurations, poor maintenance, cyberattacks, and human error. With regard to the industrial supply chain, the most relevant risks include successful cyberattacks, ransomware, and industrial espionage. In conclusion, security challenges range from interoperability between systems to a shortage of specialized personnel, requiring continuous monitoring and a multidisciplinary strategic approach.
Palabras clave : Industrial control systems; supply chain; cybersecurity; critical infrastructures.












