Research on Communication Protocol Security Compliance Mechanism in Digital Enterprise Management
Main Article Content
Abstract
This study presents a protocol-agnostic, continuous compliance mechanism for ensuring communication protocol security in digital enterprise management. The framework integrates multi-protocol environments—including HTTP/S, MQTT, Modbus TCP, OPC UA, and DNP3—across ERP, MES, and IoT systems. It features a three-layer architecture with data capture, analysis and decision, and enforcement layers, enabling automated detection of misconfigurations and real-time remediation with minimal human intervention. Experimental evaluation in a hardware-in-the-loop testbed demonstrated significant improvements in compliance rates, vulnerability reduction, mean time to detect (<5 min), and mean time to remediate (<10 min), outperforming traditional manual or passive monitoring approaches. The system achieved a high AUC of 0.982 and a precision of 0.96 for top-risk configurations, confirming robust performance in hybrid IT/OT enterprise networks. This framework is particularly relevant for industrial wireless communication environments and antenna-supported IoT networks, where secure, low-latency, and reliable communication is essential for operational continuity, real-time monitoring, and compliance governance.
Downloads
Article Details

This work is licensed under a Creative Commons Attribution 4.0 International License.
Authors who publish with this journal agree to the following terms:
- Authors retain copyright and grant the journal right of first publication with the work simultaneously licensed under a Creative Commons Attribution License that allows others to share the work with an acknowledgement of the work's authorship and initial publication in this journal.
- Authors are able to enter into separate, additional contractual arrangements for the non-exclusive distribution of the journal's published version of the work (e.g., post it to an institutional repository or publish it in a book), with an acknowledgement of its initial publication in this journal.
- Authors are permitted and encouraged to post their work online (e.g., in institutional repositories or on their website) prior to and during the submission process, as it can lead to productive exchanges, as well as earlier and greater citation of published work (See The Effect of Open Access).
References
B. S. Chohan, X. Xu, and Y. Lu, “MES dynamic interoperability for SMEs in the Factory of the Future perspective,” Procedia CIRP, vol. 107, pp. 1329-1335, 2022, doi: 10.1016/j.procir.2022.05.153.
Z. Lin, Z. Liu, Y. Zhang, J. Yan, S. Liu, B. Qi, and K. Wei, “Edge-fog-cloud hybrid collaborative computing solution with an improved parallel evolutionary strategy for enhancing tasks offloading efficiency in intelligent manufacturing workshops,” Journal of Intelligent Manufacturing, pp. 1-28, 2024, doi: 10.1007/s10845-024-02463-7.
M. Alshar’e, “Cyber security framework selection: comparison of NIST and ISO27001,” Applied Computing Journal, pp. 245-255, 2023, doi: 10.52098/acj.202364.
R. Amor and J. Dimyadi, “The promise of automated compliance checking,” Developments in the Built Environment, vol. 5, Art. no. 100039, 2021, doi: 10.1016/j.dibe.2020.100039.
M. Repetto, “Adaptive monitoring, detection, and response for agile digital service chains,” Computers & Security, vol. 132, Art. no. 103343, 2023, doi: 10.1016/j.cose.2023.103343.
S. Wijesinghe, I. Nanayakkara, R. Pathirana, R. Wickramarachchi, and I. Fernando, “Impact of IoT integration on enterprise resource planning (ERP) systems: a comprehensive literature analysis,” in Proceedings of the 2024 International Research Conference on Smart Computing and Systems Engineering (SCSE), 2024 Apr, IEEE, pp. 1-5, doi: 10.1109/SCSE61872.2024.10550684.
Z. Li, X. Mei, Z. Sun, J. Xu, J. Zhang, D. Zhang, and J. Zhu, “A reference framework for the digital twin smart factory based on cloud-fog-edge computing collaboration,” Journal of Intelligent Manufacturing, pp. 1-21, 2024, doi: 10.1007/s10845-024-02424-0.
S. Lakshminarayana, A. Praseed, and P. S. Thilagam, “Securing the IoT application layer from an MQTT protocol perspective: challenges and research prospects,” IEEE Communications Surveys & Tutorials, vol. 26, no. 4, pp. 2510-2546, 2024, doi: 10.1109/COMST.2024.3372630.
H. Kayan, M. Nunes, O. Rana, P. Burnap, and C. Perera, “Cybersecurity of industrial cyber-physical systems: A review,” ACM Computing Surveys, vol. 54, no. 11s, pp. 1-35, 2022, doi: 10.1145/3510410.
M. Farhadi Moghadam, M. Nikooghadam, A. H. Mohajerzadeh, and B. Movali, “A lightweight key management protocol for secure communication in smart grids,” Electric Power Systems Research, pp. 178, 2020, doi: 10.1016/j.epsr.2019.106024.
M. Nankya, R. Chataut, and R. Akl, “Securing industrial control systems: components, cyber threats, and machine learning-driven defense strategies,” Sensors, vol. 23, no. 21, pp. 8840, 2023, doi: 10.3390/s23218840.
M. Khayat, E. Barka, M. A. Serhani, F. Sallabi, K. Shuaib, and H. M. Khater, “Empowering security operation center with artificial intelligence and machine learning: a systematic literature review,” IEEE Access, 2025, doi: 10.1109/ACCESS.2025.3532951.
M. K. Quan, P. N. Pathirana, M. Wijayasundara, S. Setunge, D. C. Nguyen, C. G. Brinton, and H. V. Poor, “Federated learning for cyber physical systems: a comprehensive survey,” IEEE Communications Surveys & Tutorials, 2025, doi: 10.1109/COMST.2025.3570288.
G. Malik and P. Prashasti, “Shift left security,” The Eastasouth Journal of Information System and Computer Science, vol. 2, no. 3, pp. 219-245, 2025, doi: 10.58812/esiscs.v2i03.528.