零信任架构作为中小企业和先进技术系统的风险对策。

IF 3 3区 医学 Q1 MATHEMATICS, INTERDISCIPLINARY APPLICATIONS
Risk Analysis Pub Date : 2025-03-31 DOI:10.1111/risa.70026
Ahmed M Abdelmagid, Rafael Diaz
{"title":"零信任架构作为中小企业和先进技术系统的风险对策。","authors":"Ahmed M Abdelmagid, Rafael Diaz","doi":"10.1111/risa.70026","DOIUrl":null,"url":null,"abstract":"<p><p>The growing sophistication of cyberattacks exposes small- and medium-sized businesses (SMBs) to a widening range of security risks. As these threats evolve in complexity, the need for advanced security measures becomes increasingly pressing. This necessitates a proactive approach to defending against potential cyber intrusions. Emerging technologies, such as blockchain, artificial intelligence, and Zero Trust security framework, offer crucial tools for strengthening the digital infrastructure of SMBs. The Zero Trust architecture (ZTA) holds significant promise as a critical strategy for protecting SMBs. While existing literature explores the implementation of ZTA in various business settings, discussions specifically addressing the financial, human resource, and capability limitations of SMBs remain scarce. Given the vital role of SMBs in the global economy, this research offers a valuable opportunity to bridge this gap and assist researchers and practitioners in enhancing the cybersecurity of SMBs through ZTA adoption by examining and classifying potential risks that may arise during the pre- and post-deployment phases of ZTA implementation within SMBs. The risks, benefits, and challenges of ZTA adoption are introduced from the unique perspective of SMBs. Practical solutions and mitigation strategies will be provided to address the identified ZT risks and streamline the migration process for SMBs. The findings of that research showed that ZTA will bolster the cybersecurity posture and reduce the cyber risk for SMBs only if they address its associated risks effectively. Future research directions underscore the need for more research to help SMBs migrate to ZTA and mitigate the risks it may pose.</p>","PeriodicalId":21472,"journal":{"name":"Risk Analysis","volume":" ","pages":""},"PeriodicalIF":3.0000,"publicationDate":"2025-03-31","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Zero Trust Architecture as a Risk Countermeasure in Small-Medium Enterprises and Advanced Technology Systems.\",\"authors\":\"Ahmed M Abdelmagid, Rafael Diaz\",\"doi\":\"10.1111/risa.70026\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<p><p>The growing sophistication of cyberattacks exposes small- and medium-sized businesses (SMBs) to a widening range of security risks. As these threats evolve in complexity, the need for advanced security measures becomes increasingly pressing. This necessitates a proactive approach to defending against potential cyber intrusions. Emerging technologies, such as blockchain, artificial intelligence, and Zero Trust security framework, offer crucial tools for strengthening the digital infrastructure of SMBs. The Zero Trust architecture (ZTA) holds significant promise as a critical strategy for protecting SMBs. While existing literature explores the implementation of ZTA in various business settings, discussions specifically addressing the financial, human resource, and capability limitations of SMBs remain scarce. Given the vital role of SMBs in the global economy, this research offers a valuable opportunity to bridge this gap and assist researchers and practitioners in enhancing the cybersecurity of SMBs through ZTA adoption by examining and classifying potential risks that may arise during the pre- and post-deployment phases of ZTA implementation within SMBs. The risks, benefits, and challenges of ZTA adoption are introduced from the unique perspective of SMBs. Practical solutions and mitigation strategies will be provided to address the identified ZT risks and streamline the migration process for SMBs. The findings of that research showed that ZTA will bolster the cybersecurity posture and reduce the cyber risk for SMBs only if they address its associated risks effectively. Future research directions underscore the need for more research to help SMBs migrate to ZTA and mitigate the risks it may pose.</p>\",\"PeriodicalId\":21472,\"journal\":{\"name\":\"Risk Analysis\",\"volume\":\" \",\"pages\":\"\"},\"PeriodicalIF\":3.0000,\"publicationDate\":\"2025-03-31\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Risk Analysis\",\"FirstCategoryId\":\"3\",\"ListUrlMain\":\"https://doi.org/10.1111/risa.70026\",\"RegionNum\":3,\"RegionCategory\":\"医学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q1\",\"JCRName\":\"MATHEMATICS, INTERDISCIPLINARY APPLICATIONS\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Risk Analysis","FirstCategoryId":"3","ListUrlMain":"https://doi.org/10.1111/risa.70026","RegionNum":3,"RegionCategory":"医学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"MATHEMATICS, INTERDISCIPLINARY APPLICATIONS","Score":null,"Total":0}
引用次数: 0

摘要

日益复杂的网络攻击使中小型企业(smb)面临越来越广泛的安全风险。随着这些威胁变得越来越复杂,对先进安全措施的需求变得越来越迫切。这就需要采取积极主动的方法来防御潜在的网络入侵。区块链、人工智能和零信任安全框架等新兴技术为加强中小企业的数字基础设施提供了重要工具。零信任架构(Zero Trust architecture, ZTA)作为保护中小企业的关键策略具有重要的前景。虽然现有文献探讨了ZTA在各种商业环境中的实施,但专门针对中小企业的财务、人力资源和能力限制的讨论仍然很少。鉴于中小企业在全球经济中的重要作用,本研究提供了一个宝贵的机会来弥合这一差距,并通过对中小企业实施ZTA部署前后阶段可能出现的潜在风险进行检查和分类,帮助研究人员和从业人员通过采用ZTA来增强中小企业的网络安全。采用ZTA的风险、收益和挑战将从中小型企业的独特视角进行介绍。将提供切实可行的解决办法和缓解战略,以解决已查明的ZT风险,并简化中小企业的迁移过程。该研究结果表明,只有有效地解决相关风险,ZTA才能加强网络安全态势并降低中小企业的网络风险。未来的研究方向强调需要更多的研究来帮助中小企业迁移到ZTA并减轻它可能带来的风险。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Zero Trust Architecture as a Risk Countermeasure in Small-Medium Enterprises and Advanced Technology Systems.

The growing sophistication of cyberattacks exposes small- and medium-sized businesses (SMBs) to a widening range of security risks. As these threats evolve in complexity, the need for advanced security measures becomes increasingly pressing. This necessitates a proactive approach to defending against potential cyber intrusions. Emerging technologies, such as blockchain, artificial intelligence, and Zero Trust security framework, offer crucial tools for strengthening the digital infrastructure of SMBs. The Zero Trust architecture (ZTA) holds significant promise as a critical strategy for protecting SMBs. While existing literature explores the implementation of ZTA in various business settings, discussions specifically addressing the financial, human resource, and capability limitations of SMBs remain scarce. Given the vital role of SMBs in the global economy, this research offers a valuable opportunity to bridge this gap and assist researchers and practitioners in enhancing the cybersecurity of SMBs through ZTA adoption by examining and classifying potential risks that may arise during the pre- and post-deployment phases of ZTA implementation within SMBs. The risks, benefits, and challenges of ZTA adoption are introduced from the unique perspective of SMBs. Practical solutions and mitigation strategies will be provided to address the identified ZT risks and streamline the migration process for SMBs. The findings of that research showed that ZTA will bolster the cybersecurity posture and reduce the cyber risk for SMBs only if they address its associated risks effectively. Future research directions underscore the need for more research to help SMBs migrate to ZTA and mitigate the risks it may pose.

求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
Risk Analysis
Risk Analysis 数学-数学跨学科应用
CiteScore
7.50
自引率
10.50%
发文量
183
审稿时长
4.2 months
期刊介绍: Published on behalf of the Society for Risk Analysis, Risk Analysis is ranked among the top 10 journals in the ISI Journal Citation Reports under the social sciences, mathematical methods category, and provides a focal point for new developments in the field of risk analysis. This international peer-reviewed journal is committed to publishing critical empirical research and commentaries dealing with risk issues. The topics covered include: • Human health and safety risks • Microbial risks • Engineering • Mathematical modeling • Risk characterization • Risk communication • Risk management and decision-making • Risk perception, acceptability, and ethics • Laws and regulatory policy • Ecological risks.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信