Approaches to ensuring information security.

Authors

  • Lysetskyi Yu.M. https://orcid.org/0000-0002-5080-1856 , ДП «ЕС ЕНД ТІ УКРАЇНА», м. Київ, Україна
  • Kalbazov D.Y. https://orcid.org/0000-0003-3370-4584 , ТОВ «Інформаційні спеціалізовані системи», м. Київ, Україна

DOI:

https://doi.org/10.34121/1028-9763-2023-4-26-32

Keywords:

information security, cybersecurity, approaches, methods, technologies, systems, information protection, monitoring, clouds, IT infrastructure, enterprise, інформаційна безпека, кібербезпека, підходи, методи, технології, системи, захист інформації, моніторинг, хмари, ІТ-інфраструктура, підприємство

Abstract

The article analyzes situational, integration, and integration and innovation approaches that have emerged among domestic enterprises in today's market to ensure information security. The following differences between them have been identified: the situational approach involves the point implementation of information security systems, decentralized management, the lack of a unified approach to system design, and inertia in system implementation; the integration approach involves the presence of planning and information security provisioning services, the formulation of unified requirements for information security, analysis of the criticality of information assets, risk and threat management, and the design of information security from business processes of the enterprise; the integration and innovation approach includes the presence of security operation centers, operational response centers, centralized information security monitoring systems, the creation of Business Continuity Plans and Disaster Recovery Plans, and the formation of fault-tolerant protection systems. Some existing problems in choosing methods and information protection technologies are presented in the paper. The ways and means for ensuring effective information security in an enterprise are discussed. These are next-generation network firewalls, SIEM systems, DLP systems, as well as a cloud access security broker – CASB. Using CASB to ensure information security in the cloud allows for addressing the following tasks: access control; data protection; detection and response to threats; compliance with regulatory requirements; monitoring and auditing; and security policy management. Analyzing the approaches to ensuring information security in domestic enterprises, we can conclude that it should be based on a comprehensive approach and effective integration of all elements of IT infrastructure at different levels of their interaction.

References

1. What is a Security Operations Center (SOC)? URL: https://www.ibm.com/topics/security-operationscenter (дата звернення: 10.03.2023).

2. Лисецький Ю.М. Центр реагування на інциденти інформаційної безпеки. Сектор безпеки і оборони України: технології асиметричного протиборства: матеріали наук.-практ. конф. (Київ, 04.12.2020). 2020. № 42. С. 22.

3. Бобров С.І., Лисецький Ю.М. Security Operation Systems. Математичні машини і системи. 2020. № 2. С. 51–59.

4. Тернавский В.О., Калбазов Д.Й., Лисецький Ю.М. Система моніторингу та автоматизації обробки інцидентів. Математичні машини і системи. 2020. № 3. С. 80–86.

5. Business Continuity Plan | Kyndryl. URL: https://www.kyndryl.com/nz/en/learn/plan (дата звернення: 10.03.2023).

6. IT Disaster Recovery Plan – Ready.gov. URL: https://www.ready.gov/it-disaster-recovery-plan (дата звернення: 12.03.2023).

7. BYOD-стратегии, ориентированные на сотрудников. URL: http://allta.com.ua/about-byod (дата звернення: 12.03.2023).

8. Next Generation Firewall (NGFW) проти кібератак. URL: https://hub.kyivstar.ua/news/nextgeneration-firewall-nadijnyj-shhyt-vid-novyh-kiberatak-na-biznes/ (дата звернення: 16.03. 2023).

9. SIEM (Security information and event management). URL: https://it-guild.com/info/glossary/siem/ (дата звернення: 18.03.2023).

10. Рівні моделі OSI. URL: http://smartandyoung.com.ua/rivni-modeli-osi (дата звернення: 20.03.2023).

11. DNS – что это и как работает. URL: https://hostiq.ua/blog/ukr/how-does-dns-work/ (дата звернення: 24.03.2023).

12. Что такое SD-WAN – сложная технология простыми словами. URL: https://gigatrans.ua/ru/news/chto-takoe-sd-wan-slozhnaya-tehnologiya-prostumi-slovami (дата звернення: 24.03.2023).

13. What is a Cloud Access Security Broker (CASB)? URL: https://www.wiz.io/academy/what-is-a-cloud-access-security-broker-casb (дата звернення: 28.03.2023).

14. AWS Identity and Access Management (IAM) – Explained With. URL: https://www.freecodecamp.org/news/aws-iam-explained/ (дата звернення: 10.03.2023).

15. WAF (Web Application Firewall) – межсетевой экран для веб-приложений. URL: https://itglobal.com/ru-ru/company/glossary/waf/ (дата звернення: 28.03.2023).

Downloads

Views: 226
Downloads: 55

Published

2023-12-01

Issue

Section

INFORMATION AND TELECOMMUNICATION TECHNOLOGY

How to Cite

Approaches to ensuring information security. (2023). Mathematical Machines and Systems, 4, 26–32. https://doi.org/10.34121/1028-9763-2023-4-26-32