Suppr超能文献

打破业务连续性与网络安全之间的壁垒。

Breaking down silos between business continuity and cyber security.

作者信息

Phillips Rick, Tanner Brandon

出版信息

J Bus Contin Emer Plan. 2019 Jan 1;12(3):224-232.

Abstract

Every year, most businesses experience a cyber attack of some sort. Despite the fact that these attacks can interrupt business operations, many organisations lack an effective business continuity response. While some organisations do have cyber security and incident response functions in place, they focus more on mitigating the attack itself than on ensuring business operations can continue in the interim. To understand why it is important to integrate cyber security into the business continuity plan, business continuity planners must first be familiar with the common cyber threats organisations face as well as the far-reaching impact of data breaches. Then, they must address the root causes of the breakdown between business continuity and cyber security: the lack of a security culture, boardroom support and a coordinated response. Practical steps for integrating cyber security into the business continuity response include starting a conversation with those responsible for cyber security, determining the appropriate response to cyber incidents, assessing the organisation's recovery needs and testing the response strategy. Ideally, however, organisations should prevent attacks altogether. As employees are often the primary point of failure in cyber security preparedness, organisations should improve their cyber security posture by investing in education and awareness from the top down.

摘要

每年,大多数企业都会遭遇某种形式的网络攻击。尽管这些攻击会干扰业务运营,但许多组织缺乏有效的业务连续性应对措施。虽然一些组织确实具备网络安全和事件响应功能,但它们更多地关注减轻攻击本身,而不是确保业务运营在此期间能够持续。为了理解将网络安全纳入业务连续性计划为何重要,业务连续性规划者首先必须熟悉组织面临的常见网络威胁以及数据泄露的深远影响。然后,他们必须解决业务连续性与网络安全之间脱节的根本原因:缺乏安全文化、董事会支持和协调一致的应对措施。将网络安全纳入业务连续性应对的实际步骤包括与负责网络安全的人员展开对话、确定对网络事件的适当应对措施、评估组织的恢复需求以及测试应对策略。然而,理想情况下,组织应完全预防攻击。由于员工往往是网络安全防范中的主要薄弱环节,组织应自上而下地通过投资教育和提高意识来改善其网络安全态势。

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验