{"title":"零信任架构作为中小企业和先进技术系统的风险对策。","authors":"Ahmed M Abdelmagid, Rafael Diaz","doi":"10.1111/risa.70026","DOIUrl":null,"url":null,"abstract":"<p><p>The growing sophistication of cyberattacks exposes small- and medium-sized businesses (SMBs) to a widening range of security risks. As these threats evolve in complexity, the need for advanced security measures becomes increasingly pressing. This necessitates a proactive approach to defending against potential cyber intrusions. Emerging technologies, such as blockchain, artificial intelligence, and Zero Trust security framework, offer crucial tools for strengthening the digital infrastructure of SMBs. The Zero Trust architecture (ZTA) holds significant promise as a critical strategy for protecting SMBs. While existing literature explores the implementation of ZTA in various business settings, discussions specifically addressing the financial, human resource, and capability limitations of SMBs remain scarce. Given the vital role of SMBs in the global economy, this research offers a valuable opportunity to bridge this gap and assist researchers and practitioners in enhancing the cybersecurity of SMBs through ZTA adoption by examining and classifying potential risks that may arise during the pre- and post-deployment phases of ZTA implementation within SMBs. The risks, benefits, and challenges of ZTA adoption are introduced from the unique perspective of SMBs. Practical solutions and mitigation strategies will be provided to address the identified ZT risks and streamline the migration process for SMBs. The findings of that research showed that ZTA will bolster the cybersecurity posture and reduce the cyber risk for SMBs only if they address its associated risks effectively. Future research directions underscore the need for more research to help SMBs migrate to ZTA and mitigate the risks it may pose.</p>","PeriodicalId":21472,"journal":{"name":"Risk Analysis","volume":" ","pages":""},"PeriodicalIF":3.0000,"publicationDate":"2025-03-31","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Zero Trust Architecture as a Risk Countermeasure in Small-Medium Enterprises and Advanced Technology Systems.\",\"authors\":\"Ahmed M Abdelmagid, Rafael Diaz\",\"doi\":\"10.1111/risa.70026\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<p><p>The growing sophistication of cyberattacks exposes small- and medium-sized businesses (SMBs) to a widening range of security risks. As these threats evolve in complexity, the need for advanced security measures becomes increasingly pressing. This necessitates a proactive approach to defending against potential cyber intrusions. Emerging technologies, such as blockchain, artificial intelligence, and Zero Trust security framework, offer crucial tools for strengthening the digital infrastructure of SMBs. The Zero Trust architecture (ZTA) holds significant promise as a critical strategy for protecting SMBs. While existing literature explores the implementation of ZTA in various business settings, discussions specifically addressing the financial, human resource, and capability limitations of SMBs remain scarce. Given the vital role of SMBs in the global economy, this research offers a valuable opportunity to bridge this gap and assist researchers and practitioners in enhancing the cybersecurity of SMBs through ZTA adoption by examining and classifying potential risks that may arise during the pre- and post-deployment phases of ZTA implementation within SMBs. The risks, benefits, and challenges of ZTA adoption are introduced from the unique perspective of SMBs. Practical solutions and mitigation strategies will be provided to address the identified ZT risks and streamline the migration process for SMBs. The findings of that research showed that ZTA will bolster the cybersecurity posture and reduce the cyber risk for SMBs only if they address its associated risks effectively. Future research directions underscore the need for more research to help SMBs migrate to ZTA and mitigate the risks it may pose.</p>\",\"PeriodicalId\":21472,\"journal\":{\"name\":\"Risk Analysis\",\"volume\":\" \",\"pages\":\"\"},\"PeriodicalIF\":3.0000,\"publicationDate\":\"2025-03-31\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Risk Analysis\",\"FirstCategoryId\":\"3\",\"ListUrlMain\":\"https://doi.org/10.1111/risa.70026\",\"RegionNum\":3,\"RegionCategory\":\"医学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q1\",\"JCRName\":\"MATHEMATICS, INTERDISCIPLINARY APPLICATIONS\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Risk Analysis","FirstCategoryId":"3","ListUrlMain":"https://doi.org/10.1111/risa.70026","RegionNum":3,"RegionCategory":"医学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"MATHEMATICS, INTERDISCIPLINARY APPLICATIONS","Score":null,"Total":0}
Zero Trust Architecture as a Risk Countermeasure in Small-Medium Enterprises and Advanced Technology Systems.
The growing sophistication of cyberattacks exposes small- and medium-sized businesses (SMBs) to a widening range of security risks. As these threats evolve in complexity, the need for advanced security measures becomes increasingly pressing. This necessitates a proactive approach to defending against potential cyber intrusions. Emerging technologies, such as blockchain, artificial intelligence, and Zero Trust security framework, offer crucial tools for strengthening the digital infrastructure of SMBs. The Zero Trust architecture (ZTA) holds significant promise as a critical strategy for protecting SMBs. While existing literature explores the implementation of ZTA in various business settings, discussions specifically addressing the financial, human resource, and capability limitations of SMBs remain scarce. Given the vital role of SMBs in the global economy, this research offers a valuable opportunity to bridge this gap and assist researchers and practitioners in enhancing the cybersecurity of SMBs through ZTA adoption by examining and classifying potential risks that may arise during the pre- and post-deployment phases of ZTA implementation within SMBs. The risks, benefits, and challenges of ZTA adoption are introduced from the unique perspective of SMBs. Practical solutions and mitigation strategies will be provided to address the identified ZT risks and streamline the migration process for SMBs. The findings of that research showed that ZTA will bolster the cybersecurity posture and reduce the cyber risk for SMBs only if they address its associated risks effectively. Future research directions underscore the need for more research to help SMBs migrate to ZTA and mitigate the risks it may pose.
期刊介绍:
Published on behalf of the Society for Risk Analysis, Risk Analysis is ranked among the top 10 journals in the ISI Journal Citation Reports under the social sciences, mathematical methods category, and provides a focal point for new developments in the field of risk analysis. This international peer-reviewed journal is committed to publishing critical empirical research and commentaries dealing with risk issues. The topics covered include:
• Human health and safety risks
• Microbial risks
• Engineering
• Mathematical modeling
• Risk characterization
• Risk communication
• Risk management and decision-making
• Risk perception, acceptability, and ethics
• Laws and regulatory policy
• Ecological risks.