American Journal of Industrial and Business Management, 2025, 15(5), 748-766
https://www.scirp.org/journal/ajibm
ISSN Online: 2164-5175
ISSN Print: 2164-5167
DOI: 10.4236/ajibm.2025.155036 May 30, 2025 748 American Journal of Industrial and Business Management
Cybersecurity Culture and Organizational
Resilience: A Human-Centered Approach to
Digital Risk Management
Shankar Subramanian Iyer
1
, Brinitha Raji
2
1
Westford University College, Sharjah, United Arab Emirates
2
Global Business Studies, DKP, Dubai, United Arab Emirates
Abstract
As organizations face an evolving threat landscape, the need for robust cyber-
security frameworks that transcend purely technical solutions becomes more
pressing. This review paper introduces a conceptual model titled “Cybersecu-
rity Culture and Organizational Resilience: A Human-Centered Approach to
Digital Risk Management”, grounded in the integrated framework of Protec-
tion Motivation Theory (PMT), Theory of Planned Behaviour (TPB), Resili-
ence Theory, Socio-Technical Systems Theory, and Organizational Culture
Theory. The study highlights the importance of cultivating a cybersecurity cul-
ture and implementing human-centered practices to enhance organizational
resilience against cyber threats. It explores how human behaviour, awareness,
and support systems interplay with technical measures to form a comprehen-
sive defence posture. The proposed model includes four primary hypotheses
connecting cybersecurity culture, human-centered practices, digital risk be-
haviour, and organizational support systems to organizational resilience.
Through a synthesis of theoretical perspectives and contemporary cyberse-
curity practices, and qualitative approach (interviewing 15 experts), the pa-
per emphasizes a shift toward inclusive, psychologically informed, and behav-
iourally driven strategies in risk mitigation. This human-centered orientation
addresses critical gaps in traditional cyber defences and provides insights into
designing resilient organizations that are adaptive, proactive, and secure by de-
sign.
Keywords
Cybersecurity Culture, Organizational Resilience, Human-Centered Security,
Digital Risk Awareness, Cybersecurity Behaviour, Risk Management,
Employee-Centric Security, IT Risk Governance
How to cite this paper: Iyer, S. S., & Raji, B.
(2025). Cybersecurity Culture and Organi-
zational Resilience: A Human-Centered Ap-
proach to Digital Risk Management. Ameri-
can Journal of Industrial and Business Man-
agement, 15, 748-766.
https://doi.org/10.4236/ajibm.2025.155036
Received: April 22, 2025
Accepted: May 27, 2025
Published: May 30, 2025
Copyright © 2025 by author(s) and
Scientific Research Publishing Inc.
This work is licensed under the Creative
Commons Attribution International
License (CC BY 4.0).
http://creativecommons.org/licenses/by/4.0/
Open Access