S. Sokolov, O. M. Alimov, Mariy G. Golubeva, V. Burlov, Nikolai Vikhrov
{"title":"信息安全管理的自动化过程","authors":"S. Sokolov, O. M. Alimov, Mariy G. Golubeva, V. Burlov, Nikolai Vikhrov","doi":"10.1109/EICONRUS.2018.8317045","DOIUrl":null,"url":null,"abstract":"This article is devoted to the review and analysis of existing methods for ensuring information security of automated systems for the banking sector. Strengths and weaknesses were investigated. In particular, the introduction system of information security management will help to fulfill a significant part of the requirements of the group standards for information security ISO/IEC 27000 part of PCI DSS requirements and standards of the Bank of Russia, as well as its regulations and guidelines, requirements for the establishment of a subsystem of registration and accounting systems for the protection of personal data and key systems (the requirements of FSTEC of Russia).","PeriodicalId":6562,"journal":{"name":"2018 IEEE Conference of Russian Young Researchers in Electrical and Electronic Engineering (EIConRus)","volume":"36 1","pages":"124-127"},"PeriodicalIF":0.0000,"publicationDate":"2018-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"14","resultStr":"{\"title\":\"The automating process of information security management\",\"authors\":\"S. Sokolov, O. M. Alimov, Mariy G. Golubeva, V. Burlov, Nikolai Vikhrov\",\"doi\":\"10.1109/EICONRUS.2018.8317045\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"This article is devoted to the review and analysis of existing methods for ensuring information security of automated systems for the banking sector. Strengths and weaknesses were investigated. In particular, the introduction system of information security management will help to fulfill a significant part of the requirements of the group standards for information security ISO/IEC 27000 part of PCI DSS requirements and standards of the Bank of Russia, as well as its regulations and guidelines, requirements for the establishment of a subsystem of registration and accounting systems for the protection of personal data and key systems (the requirements of FSTEC of Russia).\",\"PeriodicalId\":6562,\"journal\":{\"name\":\"2018 IEEE Conference of Russian Young Researchers in Electrical and Electronic Engineering (EIConRus)\",\"volume\":\"36 1\",\"pages\":\"124-127\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2018-01-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"14\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2018 IEEE Conference of Russian Young Researchers in Electrical and Electronic Engineering (EIConRus)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/EICONRUS.2018.8317045\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 IEEE Conference of Russian Young Researchers in Electrical and Electronic Engineering (EIConRus)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/EICONRUS.2018.8317045","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
The automating process of information security management
This article is devoted to the review and analysis of existing methods for ensuring information security of automated systems for the banking sector. Strengths and weaknesses were investigated. In particular, the introduction system of information security management will help to fulfill a significant part of the requirements of the group standards for information security ISO/IEC 27000 part of PCI DSS requirements and standards of the Bank of Russia, as well as its regulations and guidelines, requirements for the establishment of a subsystem of registration and accounting systems for the protection of personal data and key systems (the requirements of FSTEC of Russia).