MARATTO

article · ScienceRise

Development of frameworks for securing civil infrastructure information systems for building construction

Abstract

The object of research. The development of compatible security frameworks that align with civil and building construction information systems and BIM was undertaken. The paper examined existing literature on traditional construction management concepts and the systems view of building construction projects. It explored information systems security frameworks for the deployment of cybersecurity principles; examined the risk management in the world of construction management and BIM. This was with the view to developing security protocols that protect BIM data from DLP threats. Investigated problem. BIM and smart construction rely heavily on continuous data exchange leaving them exposed to cyberattacks. Previous researches in the field confirmed there was no existing cybersecurity standards that are directly applicable to construction project management. The dearth of information on the applicability of the existing ICS framework to construction management warrants that it is develop a new compatible framework solution that accommodate the dynamic capabilities of BIM and the scope, complexity among other of smart construction systems. The main scientific results. The results showed that the NIST-CSF 2.0 (NIST Cybersecurity Framework), fine-tuned with some adaptabilities in relation to each specific project, is the most compatible and recommended security framework for BIM and CIIS, offering flexibility, scalability, and alignment with both information security and management needs. It also supported the fact that smart construction management is fast becoming a cyber-physical endeavor due to the extended reliance on digital platforms. The area of practical use of the research results. Hence, the increasing call for government agencies such as the Federal Housing Authority (FHA) of Nigeria to develop construction-specific cybersecurity guidelines. It is also recommended that these agencies should integrate governance, risk management and compliance (GRC) into building approval processes. Innovative technological product. The adoption of the new framework will empower construction firms to move from reactive to proactive cybersecurity frameworks while deploying ISO 27001 and NIST standards. Firms will hence be positioned to integrate cybersecurity metrics into project performance KPIs. Scope of the innovative technological product. Cybersecurity must be recognized as a foundational pillar of smart construction and sustainable development in the built environment. Strategic investment, supportive policy frameworks, and capacity building are essential to achieving resilient and secure construction information systems. This is with a view to resolving all conundrum surrounding BIM and building construction for enhanced safety and security of project deliverables.

Research topics

  • BIM and Construction Integration
  • Construction Project Management and Performance
  • Information and Cyber Security

Sustainable Development Goals

Read the original research

This page summarises published work. The authoritative version sits with the publisher.

DOI: 10.21303/2313-8416.2025.004093

Is something wrong with this record? Report it or request removal.

Discussion

Discuss this research

Have you built on this work, tried to replicate it, or seen it applied in practice? Share what you know. Verified researchers and MARATTO™ domain experts can open a discussion, and any member can reply. Contributions are reviewed before they appear.

No discussion yet. Open the first thread.