A systematic literature review on the adoption and effectiveness of cybersecurity frameworks in higher education institutions

Shamsuddeen Umaru Adamu et al.

Information and Computer Security2026https://doi.org/10.1108/ics-10-2025-0403article
AJG 1ABDC B
Weight
0.50

Abstract

Purpose In light of the fast-paced digital transformation, this paper aims to examine the effectiveness and adoption of cybersecurity frameworks in higher education institutions (HEIs). Design/methodology/approach The methodological approach involved a systematic literature review that synthesized evidence from recent studies to classify and evaluate cybersecurity frameworks that are relevant to HEIs. Findings The study identifies three main types of frameworks, which are maturity and capability models, governance-based and collaborative structures, and technical and operational mechanisms. COBIT 5, Zero Trust and risk assessment models are frameworks that enhance institutional safety only when they are aligned with governance, resources, cultural norms and user experience. Persistent issues include fragmented adoption, minimal cooperation among educational institutions, and a preference for normative rather than alternative methods. Integrating ethical considerations and training with cognitive theory, as well as postincident learning mechanisms, are among the best practices. Research limitations/implications The limited number of empirical studies focusing on HEIs and the geographic preference for developed areas restrict the impact of the findings presented in this review. Practical implications The results offer practical advice for HEIs to implement tailored, holistic cybersecurity frameworks that address resilience, collaboration and culture adaptation beyond just compliance. Social implications HEIs should prioritize cybersecurity to protect their teaching, research and innovation, as well as intellectual capital and public trust. Originality/value This paper presents a methodical examination of cybersecurity management frameworks in HEIs, emphasizing both technical and socio-technical aspects, providing premise development for culturally sensitive and sustainable strategies.

Open via your library →

Cite this paper

https://doi.org/https://doi.org/10.1108/ics-10-2025-0403

Or copy a formatted citation

@article{shamsuddeen2026,
  title        = {{A systematic literature review on the adoption and effectiveness of cybersecurity frameworks in higher education institutions}},
  author       = {Shamsuddeen Umaru Adamu et al.},
  journal      = {Information and Computer Security},
  year         = {2026},
  doi          = {https://doi.org/https://doi.org/10.1108/ics-10-2025-0403},
}

Paste directly into BibTeX, Zotero, or your reference manager.

Flag this paper

A systematic literature review on the adoption and effectiveness of cybersecurity frameworks in higher education institutions

Flags are reviewed by the Arbiter methodology team within 5 business days.


Evidence weight

0.50

Balanced mode · F 0.40 / M 0.15 / V 0.05 / R 0.40

F · citation impact0.50 × 0.4 = 0.20
M · momentum0.50 × 0.15 = 0.07
V · venue signal0.50 × 0.05 = 0.03
R · text relevance †0.50 × 0.4 = 0.20

† Text relevance is estimated at 0.50 on the detail page — for your query’s actual relevance score, open this paper from a search result.