The analysis demonstrated the importance of a systematic approach to risk management, including continuous monitoring, adaptation, and improvement of security measures, and are the basis for further research in this area.
Abstract
The article is devoted to the topical issue of analyzing and improving the methods and means of protecting a company's network infrastructure. A company's network contains all the important information that affects the continuity of the company's operations. That is why it is necessary to take a comprehensive approach to its protection. The focus is on building a technological chain for identifying network security risks. The study is based on a thorough analysis of modern literature and information resources, materials from leading companies providing network equipment and network configuration services. The main stages of the technological chain of risk identification are considered, including asset identification, threat assessment, vulnerability detection, consequence and probability assessment, development of risk minimization strategies, as well as monitoring, analysis, and improvement of security measures. The analysis made it possible to identify key aspects that affect the effectiveness of risk management and offer recommendations for improving network security. The process of assessing network security risks, which is critical to ensuring the security of the company's information systems, is also discussed in detail. The key stages of this process are described, starting with identifying assets and threats and ending with developing and implementing risk minimization strategies. The analysis demonstrated the importance of a systematic approach to risk management, including continuous monitoring, adaptation, and improvement of security measures. The findings are important for further developing strategies to protect and secure the company's network infrastructure and are the basis for further research in this area.
Key words: cybersecurity; network security; technological chain for determining network security risks; threat assessment process; risk analysis methods; risk acceptance/avoidance table.
This article examines the complex issues involved in guaranteeing the cybersecurity of key infrastructures, which are essential to contemporary society and the economy and cover vital industries like electricity, transportation, and finance. Protecting these infrastructures from changing cyber threats becomes not only...
Noor Sabeeh Abbas· International Journal of Adv...· 0 citations
The article analyzes the theoretical and practical principles of state regulation of information security as a component of ensuring national security in the context of the development of the information society and pays particular attention to the use of modern digital technologies.
A. Nekriach, H. Kyrychenko· Actual problems of innovativ...· 0 citations
The results indicate that a NIST-based approach can assist organizations in identifying and prioritizing cybersecurity risks, strengthening data protection mechanisms, enhancing incident readiness, and optimizing continuous security monitoring.
M. B. Legowo, Budi Indiarto, Adzrani Haura Badzlinaya Novianto et al.· International Journal of Inn...· 0 citations
It is found that regular, authorized penetration testing can support vulnerability identification, risk assessment, and the implementation of appropriate remediation measures, and the study concludes that regular, authorized penetration testing can support vulnerability identification, risk assessment, and the implemen...
Bibi Iqra· International Journal of Dig...· 0 citations
Examination of modern trends in the use of artificial intelligence technologies in cybersecurity systems in the face of growing digital threats and the increasing complexity of the information infrastructure of retailers finds the comparative effectiveness of various security models for retailers varies.
E. Kravchenko, Roman V. Uvarov· COMPUTER SCIENCE, INFORMATIC...· 0 citations
Distributed Denial of Service (DDoS) attacks on critical information infrastructures (CII) cause operational disruptions and result in financial and reputational damage to organisations. Our study provides an integrated framework to assess, quantify and mitigate the cyber-risk of DDoS attacks on CII organisations i...
Priyanka Srivastava, Arunabha Mukhopadhyay· Journal of Enterprise Inform...· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.