集成网络弹性:综合业务弹性的关键组成部分。

Q3 Medicine
Robert Fernandes
{"title":"集成网络弹性:综合业务弹性的关键组成部分。","authors":"Robert Fernandes","doi":"10.69554/LMGO9459","DOIUrl":null,"url":null,"abstract":"<p><p>This paper advocates for the integration of threat exposure monitoring (TEM) as a critical tool in cyber security resilience frameworks. As organisations face increasing cyber threats, TEM provides an essential, proactive approach to identifying potential vulnerabilities before they can be exploited. By monitoring various online environments, including the dark web, hacker forums and misconfigured cloud storage, TEM can uncover compromised credentials, exposed data and other risk factors that could lead to operational disruptions. This proactive monitoring strategy enhances an organisation's preparedness, helping to prevent costly incidents and mitigate risks before they escalate. Using notable case studies, such as the Colonial Pipeline ransomware incident and the Orange Spain outage, the paper illustrates the devastating impact of cyber breaches and underscores how TEM could help avoid similar disruptions. Readers will gain an understanding of how to implement a TEM programme, identify critical digital assets for monitoring and integrate TEM within broader threat intelligence practices. Ultimately, this paper provides resilience professionals with a structured approach to leveraging TEM for robust cyber defence, offering practical insights on reducing exposure risks and strengthening overall business resiliency. This article is also included in The Business & Management Collection which can be accessed at https://hstalks.com/business/.</p>","PeriodicalId":39080,"journal":{"name":"Journal of business continuity & emergency planning","volume":"18 4","pages":"357-371"},"PeriodicalIF":0.0000,"publicationDate":"2025-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Integrating cyber resilience: A critical component of comprehensive business resilience.\",\"authors\":\"Robert Fernandes\",\"doi\":\"10.69554/LMGO9459\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<p><p>This paper advocates for the integration of threat exposure monitoring (TEM) as a critical tool in cyber security resilience frameworks. As organisations face increasing cyber threats, TEM provides an essential, proactive approach to identifying potential vulnerabilities before they can be exploited. By monitoring various online environments, including the dark web, hacker forums and misconfigured cloud storage, TEM can uncover compromised credentials, exposed data and other risk factors that could lead to operational disruptions. This proactive monitoring strategy enhances an organisation's preparedness, helping to prevent costly incidents and mitigate risks before they escalate. Using notable case studies, such as the Colonial Pipeline ransomware incident and the Orange Spain outage, the paper illustrates the devastating impact of cyber breaches and underscores how TEM could help avoid similar disruptions. Readers will gain an understanding of how to implement a TEM programme, identify critical digital assets for monitoring and integrate TEM within broader threat intelligence practices. Ultimately, this paper provides resilience professionals with a structured approach to leveraging TEM for robust cyber defence, offering practical insights on reducing exposure risks and strengthening overall business resiliency. This article is also included in The Business & Management Collection which can be accessed at https://hstalks.com/business/.</p>\",\"PeriodicalId\":39080,\"journal\":{\"name\":\"Journal of business continuity & emergency planning\",\"volume\":\"18 4\",\"pages\":\"357-371\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2025-01-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Journal of business continuity & emergency planning\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.69554/LMGO9459\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q3\",\"JCRName\":\"Medicine\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Journal of business continuity & emergency planning","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.69554/LMGO9459","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q3","JCRName":"Medicine","Score":null,"Total":0}
引用次数: 0

摘要

本文主张将威胁暴露监测(TEM)作为网络安全弹性框架中的关键工具。随着企业面临越来越多的网络威胁,TEM提供了一种必要的、主动的方法,可以在潜在漏洞被利用之前识别它们。通过监控各种在线环境,包括暗网、黑客论坛和配置错误的云存储,TEM可以发现受损的凭证、暴露的数据和其他可能导致运营中断的风险因素。这种主动监控策略增强了组织的准备能力,有助于防止代价高昂的事件,并在风险升级之前降低风险。本文使用了一些著名的案例研究,例如Colonial Pipeline勒索软件事件和Orange Spain中断事件,说明了网络入侵的破坏性影响,并强调了TEM如何帮助避免类似的中断。读者将了解如何实施TEM计划,识别用于监控的关键数字资产,并将TEM整合到更广泛的威胁情报实践中。最后,本文为弹性专业人员提供了一种结构化的方法,以利用TEM进行强大的网络防御,为减少暴露风险和加强整体业务弹性提供实用的见解。这篇文章也包含在商业和管理合集中,可以在https://hstalks.com/business/上访问。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Integrating cyber resilience: A critical component of comprehensive business resilience.

This paper advocates for the integration of threat exposure monitoring (TEM) as a critical tool in cyber security resilience frameworks. As organisations face increasing cyber threats, TEM provides an essential, proactive approach to identifying potential vulnerabilities before they can be exploited. By monitoring various online environments, including the dark web, hacker forums and misconfigured cloud storage, TEM can uncover compromised credentials, exposed data and other risk factors that could lead to operational disruptions. This proactive monitoring strategy enhances an organisation's preparedness, helping to prevent costly incidents and mitigate risks before they escalate. Using notable case studies, such as the Colonial Pipeline ransomware incident and the Orange Spain outage, the paper illustrates the devastating impact of cyber breaches and underscores how TEM could help avoid similar disruptions. Readers will gain an understanding of how to implement a TEM programme, identify critical digital assets for monitoring and integrate TEM within broader threat intelligence practices. Ultimately, this paper provides resilience professionals with a structured approach to leveraging TEM for robust cyber defence, offering practical insights on reducing exposure risks and strengthening overall business resiliency. This article is also included in The Business & Management Collection which can be accessed at https://hstalks.com/business/.

求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
CiteScore
1.30
自引率
0.00%
发文量
34
期刊介绍: Journal of Business Continuity & Emergency Planning is the leading professional journal publishing peer-reviewed articles and case studies written by and for business continuity and emergency managers.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信