Cybersecurity Risks at Port

This paper focuses on assessing the cybersecurity risks associated with digital solutions used in ports. The assessment is conducted by using the European Union Agency for Cybersecurity (ENISA) guidelines for cybersecurity in the maritime sector in combination with guidance from the National Institu...

Full description

Saved in:
Bibliographic Details
Main Authors: Tombak Mari-Liis, Zetterman Björn-Erik, Tapaninen Ulla Pirita
Format: Article
Language:English
Published: Sciendo 2025-04-01
Series:Transport and Telecommunication
Subjects:
Online Access:https://doi.org/10.2478/ttj-2025-0021
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1839647326863360000
author Tombak Mari-Liis
Zetterman Björn-Erik
Tapaninen Ulla Pirita
author_facet Tombak Mari-Liis
Zetterman Björn-Erik
Tapaninen Ulla Pirita
author_sort Tombak Mari-Liis
collection DOAJ
description This paper focuses on assessing the cybersecurity risks associated with digital solutions used in ports. The assessment is conducted by using the European Union Agency for Cybersecurity (ENISA) guidelines for cybersecurity in the maritime sector in combination with guidance from the National Institute of Standards and Technology (NIST) and the ENISA Threat Landscape (ETL) report. As a result, the risk assessment considering the impact and the likelihood of cybersecurity risks occurrence was developed, followed by risk mitigation possibilities for ports. The novelty of this paper lies in its analysis of potential risks to ports, incorporating perspectives from different ports in the Baltic Sea region. During the assessment, the analysis revealed the highest threat event is ransomware, followed by moderate-level threats such as denial of service, malware, and threats to data. To effectively mitigate risks, ports should develop and test incident response plans, implement secure backup strategies, conduct regular staff training, and collaborate with partners.
format Article
id doaj-art-0eae9ab59d7b4b1292a8661c61edc7f5
institution Matheson Library
issn 1407-6179
language English
publishDate 2025-04-01
publisher Sciendo
record_format Article
series Transport and Telecommunication
spelling doaj-art-0eae9ab59d7b4b1292a8661c61edc7f52025-06-30T06:58:02ZengSciendoTransport and Telecommunication1407-61792025-04-0126327629110.2478/ttj-2025-0021Cybersecurity Risks at PortTombak Mari-Liis0Zetterman Björn-Erik1Tapaninen Ulla Pirita21Estonian Maritime Academy, Tallinn University of Technology Tallinn, Estonia, Kopli 101; TTK University of Applied Sciences Tallinn, Estonia, Pärnu mnt 622Åland University of Applied Sciences Mariehamn, Finland, 17 Neptunigatan3Estonian Maritime Academy, Tallinn University of Technology Tallinn, Estonia, Kopli 101This paper focuses on assessing the cybersecurity risks associated with digital solutions used in ports. The assessment is conducted by using the European Union Agency for Cybersecurity (ENISA) guidelines for cybersecurity in the maritime sector in combination with guidance from the National Institute of Standards and Technology (NIST) and the ENISA Threat Landscape (ETL) report. As a result, the risk assessment considering the impact and the likelihood of cybersecurity risks occurrence was developed, followed by risk mitigation possibilities for ports. The novelty of this paper lies in its analysis of potential risks to ports, incorporating perspectives from different ports in the Baltic Sea region. During the assessment, the analysis revealed the highest threat event is ransomware, followed by moderate-level threats such as denial of service, malware, and threats to data. To effectively mitigate risks, ports should develop and test incident response plans, implement secure backup strategies, conduct regular staff training, and collaborate with partners.https://doi.org/10.2478/ttj-2025-0021digitalisationport cybersecurityrisk assessmentrisk mitigationnis 2enisa
spellingShingle Tombak Mari-Liis
Zetterman Björn-Erik
Tapaninen Ulla Pirita
Cybersecurity Risks at Port
Transport and Telecommunication
digitalisation
port cybersecurity
risk assessment
risk mitigation
nis 2
enisa
title Cybersecurity Risks at Port
title_full Cybersecurity Risks at Port
title_fullStr Cybersecurity Risks at Port
title_full_unstemmed Cybersecurity Risks at Port
title_short Cybersecurity Risks at Port
title_sort cybersecurity risks at port
topic digitalisation
port cybersecurity
risk assessment
risk mitigation
nis 2
enisa
url https://doi.org/10.2478/ttj-2025-0021
work_keys_str_mv AT tombakmariliis cybersecurityrisksatport
AT zettermanbjornerik cybersecurityrisksatport
AT tapaninenullapirita cybersecurityrisksatport