• 文献检索
  • 文档翻译
  • 深度研究
  • 学术资讯
  • Suppr Zotero 插件Zotero 插件
  • 邀请有礼
  • 套餐&价格
  • 历史记录
应用&插件
Suppr Zotero 插件Zotero 插件浏览器插件Mac 客户端Windows 客户端微信小程序
定价
高级版会员购买积分包购买API积分包
服务
文献检索文档翻译深度研究API 文档MCP 服务
关于我们
关于 Suppr公司介绍联系我们用户协议隐私条款
关注我们

Suppr 超能文献

核心技术专利:CN118964589B侵权必究
粤ICP备2023148730 号-1Suppr @ 2026

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验

重新定义网络弹性:从风险登记簿的视角。

Redefining cyber resilience : Through the risk register lens.

机构信息

Truist.

出版信息

J Bus Contin Emer Plan. 2024 Jan 1;18(1):75-83.

PMID:39164862
Abstract

Resilience is deeper than maintaining a company's operations and services in the face of significant disruptions. It is the ability of a business to withstand, pivot and continue to grow in the face of a significant threat. To achieve resilience, companies must have an integrated, end-to-end understanding of how a specific threat magnifies the risks identified on their risk register, and what measures are needed across the enterprise to address the amplification of those risks. This paper details how the need for a holistic approach is especially important for cyber crises, compared with other types of crises, because they tend to have more broad-ranging impacts and complexities, such as: unclear timelines, lack of public empathy, unpredictable human threat actor(s), as well as a broader set of internal and external stakeholders that need to be engaged. Unlike other crises, cyber crises have the potential to magnify most - if not all - of the risks on the risk register. As such, cyber resilience requires ensuring that key stakeholders, whether shareholders, customers, regulators, business partners, employees, etc, stay resolute in their faith in a company and its leadership's ability to navigate the increasingly complex issues related to cyber risks and how these issues are addressed enterprise-wide, not purely seen through the lens of technical or operational resilience. To achieve cyber resilience, organisations must develop and implement programmes that integrate both the technical and the broader business measures needed to limit fallout, demonstrate leadership through cyber crises, and deepen trust regardless of the potential severity of the impact.

摘要

弹性不仅仅是指在面临重大干扰时维持公司的运营和服务。它是企业在面临重大威胁时能够承受、调整并继续发展的能力。为了实现弹性,公司必须全面了解特定威胁如何放大风险登记簿上识别出的风险,以及企业范围内需要采取哪些措施来应对这些风险的放大。本文详细说明了与其他类型的危机相比,整体方法对于网络危机尤其重要,因为网络危机往往具有更广泛的影响和更复杂的情况,例如:不明确的时间表、缺乏公众的同理心、不可预测的人为威胁者,以及更广泛的内部和外部利益相关者需要参与。与其他危机不同,网络危机有可能放大风险登记簿上的大多数(如果不是全部)风险。因此,网络弹性需要确保主要利益相关者,无论是股东、客户、监管机构、业务合作伙伴、员工等,都坚定地相信公司及其领导层有能力应对与网络风险相关的日益复杂的问题,以及如何在整个企业范围内解决这些问题,而不仅仅是从技术或运营弹性的角度来看待这些问题。为了实现网络弹性,组织必须制定和实施计划,将限制影响所需的技术和更广泛的业务措施结合起来,在网络危机中展示领导力,并加深信任,无论潜在影响的严重程度如何。

相似文献

1
Redefining cyber resilience : Through the risk register lens.重新定义网络弹性:从风险登记簿的视角。
J Bus Contin Emer Plan. 2024 Jan 1;18(1):75-83.
2
Building organisational cyber resilience: A strategic knowledge-based view of cyber security management.构建组织的网络弹性:基于战略知识的网络安全管理视角
J Bus Contin Emer Plan. 2015;9(2):185-95.
3
Breaking down silos between business continuity and cyber security.打破业务连续性与网络安全之间的壁垒。
J Bus Contin Emer Plan. 2019 Jan 1;12(3):224-232.
4
Strategic dilemmas when managing cyber attacks.管理网络攻击时的战略困境。
J Bus Contin Emer Plan. 2024 Jan 1;17(4):323-335.
5
The synergy needed for business resilience.业务韧性所需的协同作用。
J Bus Contin Emer Plan. 2015 Autumn;9(1):10-7.
6
Enhancing infrastructure resilience through business continuity planning.通过业务连续性规划提高基础设施恢复力。
J Bus Contin Emer Plan. 2017 Jan 1;11(2):163-73.
7
Improving organisational resilience through enterprise security risk management.通过企业安全风险管理提高组织韧性。
J Bus Contin Emer Plan. 2016;10(1):44-56.
8
Cyber security: a critical examination of information sharing versus data sensitivity issues for organisations at risk of cyber attack.网络安全:对面临网络攻击风险的组织在信息共享与数据敏感性问题方面的批判性审视。
J Bus Contin Emer Plan. 2013;7(2):103-11.
9
Cyber crime: can a standard risk analysis help in the challenges facing business continuity managers?网络犯罪:标准风险分析能否帮助应对业务连续性管理人员面临的挑战?
J Bus Contin Emer Plan. 2013;7(2):126-37.
10
The cyber security threat stops in the boardroom.网络安全威胁止步于董事会会议室。
J Bus Contin Emer Plan. 2013;7(2):138-48.