Corporate Security Governance in the Digital Age
Strategic Challenges and Cyber Threats in Colombia and Latin America
DOI:
https://doi.org/10.46661/respublica.13640Keywords:
Corporate security governance, Cybersecurity, Risk management, Digital transformation, Organizational resilience, Latin AmericaAbstract
This article analyzes corporate security governance in the digital era, focusing on strategic challenges and cyber threats in Colombia and Latin America. The research is grounded in risk management theory, which serves as the main analytical framework to understand how organizations identify, assess, and respond to evolving cyber risks. The findings reveal that corporate security has shifted from an operational function to a strategic component of organizational governance, requiring active involvement from top management. However, significant gaps persist in the region, including limited cybersecurity capabilities, regulatory fragmentation, and insufficient integration between security and corporate strategy. Additionally, human factors and organizational culture remain critical vulnerabilities.Downloads
References
BALDWIN, Robert., & HENKEL, Mary. (2015). Regulatory governance in a changing world. Oxford University Press.
Banco Interamericano de Desarrollo (BID). (2021). Ciberseguridad en América Latina y el Caribe: Riesgos, avances y el camino a seguir. https://www.iadb.org
CANO CUEVAS, Diego Fernando., VELANDIA PARDO, Elmers Freddy., CARRASCAL JACOME, Manuel Guillermo., & MOURE BLANCO, David. (2026). Human Firewall: Privacy Paradigms in the Face of the Technological Revolution. AI Influence on Governance and Law in the Digital Age https://doi.org/10.4018/979-8-3373-4480-5.ch006
Comisión Económica para América Latina y el Caribe (CEPAL). (2022). Transformación digital en América Latina: Desafíos y oportunidades. Naciones Unidas. https://www.cepal.org
DELGADO MORAN, Juan. José. (2023). Perspectivas Criminológicas aplicadas a las Políticas de Seguridad Pública, en Caruso Fontán/ Macías Caro (dirs.), Nuevas tendencias y modernos peligros de la política criminal. Pp. 117-153. Tirant lo Blanch.
ENISA. (2023). ENISA Threat Landscape 2023. European Union Agency for Cybersecurity. https://www.enisa.europa.eu
FERNÁNDEZ OSORIO, Andrés. Eduardo., VILLALBA GARCÍA, Luisa. Fernanda., & VELANDIA PARDO, Elmers. Freddy. (2024). Gobernanza policéntrica, big data e inteligencia artificial: herramientas para la seguridad ciudadana en Colombia. Revista Criminalidad, 66(3), 11-25. https://doi.org/10.47741/17943108.658
GORDON, Lawrence. A., LOEB, Martin. P., & ZHOU, Lei. (2015). The impact of information security breaches: Has there been a downward shift in costs? Journal of Accounting and Public Policy, 34(5), 429–444. https://doi.org/10.3233/JCS-2009-0398
ISACA. (2020). COBIT 2019 framework: Governance and management objectives. ISACA. https://www.isaca.org
ISO. (2018). ISO 31000: Risk management – Guidelines. International Organization for Standardization.
ISO. (2022). ISO/IEC 27001: Information security, cybersecurity and privacy protection – Information security management systems. International Organization for Standardization.
JENSEN, Michael. C., & MECKLING, William. H. (1976). Theory of the firm: Managerial behavior, agency costs and ownership structure. Journal of Financial Economics, 3(4), 305–360. https://doi.org/10.1016/0304-405X(76)90026-X
KSHETRI, Nir. (2021). Cybersecurity management: An organizational and strategic approach. Springer. https://doi.org/10.3138/9781487531249
MARTINO, Luigi. (2018). La quinta dimensione della conflittualità. L’ascesa del cyberspazio ei suoi effetti sulla politica internazionale. Politica e Società, [online] 1, pp.61–76. doi:https://doi.org/10.4476/89790.
MARTINO, Luigi. (2024). International Law, State Sovereignty and Competition in the Digital Age. Rivista di filosofia del diritto internazionale e della politica globale, Vol. 21, Nº. 2, 2024. https://dialnet.unirioja.es/descarga/articulo/10098952.pdf
MAZURIER, Pablo. Andrés, & PAYÁ SANTOS, Claudio. Augusto. (2018). Amenazas híbridas: teoría de la hibridez y nuevo orden internacional. Thomson Reuters Aranzadi.
NIST. (2020). Framework for improving critical infrastructure cybersecurity (Version 1.1). National Institute of Standards and Technology. https://www.nist.gov
Organización de los Estados Americanos (OEA). (2022). Informe de ciberseguridad en América Latina y el Caribe. https://www.oas.org
PAYÁ SANTOS, Claudio Augusto., MARTINO, Luigi., SANZ GONZÁLEZ, Roger., & DELGADO MORÁN, Juan José. (2026). Technological Gaps and Security: Challenges for Law Enforcement and Public Safety." AI Influence on Governance and Law in the Digital Age (pp. 169-192). IGI Global Scientific Publishing. https://doi.org/10.4018/979-8-3373-4480-5.ch007
PAYÁ SANTOS, Claudio. Augusto; DELGADO MORÁN, Juan. José;. MARTINO, Luigi; GARCÍA SEGURA, Luis, A.; DIZ CASAL, Javier, & FERNÁNDEZ-RODRÍGUEZ, Juan, Carlos. (2023). Fuzzy Logic analysis for managing Uncertain Situations. Review of Contemporary Philosophy Vol 22 (1), 2023 pp. 6780 -6797. https://doi.org/10.52783/rcp.1132
PELTIER, Thomas. R. (2016). Information security policies, procedures, and standards: Guidelines for effective information security management. Auerbach Publications. https://doi.org/10.1201/9780849390326
PORTER, Michael. E., & HEPPELMANN, James. E. (2014). How smart, connected products are transforming competition. Harvard Business Review, 92(11), 64–88.
TAPIAS DIAZ, Fernando, y DELGADO MORAN, Juan. José. (2017) “Lucha de realidad en Colombia” en Análisis de la seguridad internacional desde perspectivas académicas. Thomson Reuters Aranzadi.
TORRES GUARNIZO, Mauricio. Antonio., & VELANDIA-PARDO, Elmers. Freddy. (2022). The interrelationship of human rights and the environment from the human security perspective. Revista Científica General José María Córdova, 20(37), 111–128. https://doi.org/10.21830/19006586.803
Downloads
Published
How to Cite
Issue
Section
License
Copyright (c) 2025 Manuel Guillermo Carrascal Jacome

This work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License.

