Tran Duc Le

and 2 more

The increasing number, severity, and sophistication of cybersecurity threats complicate the task of cybersecurity teams, and therefore, cybersecurity analytics is increasingly becoming an essential tool at their disposal to exploit new big data sources, which can be immensely valuable. Thus, there is a critical need for a comprehensive understanding of cybersecurity analytics in the enterprise context. This systematic literature review, leveraging multiple databases and sources pertinent to cybersecurity and business domains, aims at providing valuable insights into the evolution, adoption, techniques, models, data sources, challenges, and future research opportunities concerning enterprise cybersecurity analytics. Employing the PRISMA methodology, the review synthesizes existing literature to address six research questions, delivering a holistic understanding of the cybersecurity analytics landscape. The findings result in ten observations encapsulating various aspects of cybersecurity analytics. These observations underscore the driving factors and technological shifts influencing the adoption of cybersecurity analytics, emphasize the necessity of a holistic approach, reveal the widespread adoption across different sectors, highlight the diverse analysis techniques and data types in use, and elucidate the challenges faced by enterprises. The study concludes that while implementing cybersecurity analytics poses significant challenges, it also presents considerable opportunities for improving enterprises' cybersecurity situation. Finally, this study unveils the research gaps in enterprise cybersecurity analytics that need further exploration.