Genius Multidisciplinary International Journal
ISSN: 2971-7760  |  Vol. 6, No. 2

Developing a Cybersecurity–Enterprise Risk Management Integration Framework for Enhancing Organizational Resilience

Aliyu Bello Salat; Aliyu Buba Dahiru; Mohammed Kabiru Halidu

Abstract

The increasing frequency, sophistication, and business impact of cyber threats have transformed cybersecurity from a technical concern into a strategic enterprise risk management priority. Organizations undergoing digital transformation are increasingly exposed to cyber risks capable of disrupting operations, compromising sensitive information, damaging organizational reputation, and undermining business continuity. Although cybersecurity governance and Enterprise Risk Management (ERM) have individually received considerable attention in both research and practice, their integration remains fragmented across many organizations. This study develops a Cybersecurity–Enterprise Resilience Integration Framework (CERIF) that integrates cybersecurity governance, enterprise risk management, strategic decision-making, and organizational resilience into a unified governance model. Using a systematic literature review and comparative analytical approach, the study synthesizes recent developments in cybersecurity governance, enterprise risk management, organizational resilience, artificial intelligence, continuous risk monitoring, and digital governance. The analysis demonstrates that integrating cybersecurity governance with ERM enhances enterprise-wide cyber risk visibility, strengthens executive decision-making, improves regulatory compliance, supports proactive risk treatment, and increases organizational resilience against evolving cyber threats. The proposed CERIF framework establishes a structured governance architecture that aligns cybersecurity activities with enterprise objectives through continuous monitoring, adaptive risk assessment, and organizational learning. The study concludes that effective cybersecurity governance should be institutionalized as an integral component of enterprise risk management rather than managed as an isolated technical function. The proposed framework provides practical guidance for organizations seeking to strengthen cyber resilience while supporting sustainable organizational performance in an increasingly digital business environment.

DOI: https://doi.org/10.5281/zenodo.21768248

Published: August 3, 2026

Journal: Genius Multidisciplinary International Journal

ISSN: 2971-7760

Volume: 6, Issue 2

Publisher: Genius Academy — Nasarawa State University, Keffi, Nigeria