云化工业软件安全风险与应对策略研究OA
Research on security risks and response strategies of cloud based industry software
随着云计算技术的快速发展,云化工业软件已成为推动制造业数字化转型的关键驱动力,但也面临越来越复杂的安全风险挑战,并已受到广泛重视.云化工业软件的安全风险主要来自技术层面、信息通信层面、业务管理层面和外部约束层面,具体包括技术与架构、网络与访问控制、人员与流程及法律与合规性四个方面.在对安全风险进行分析的基础上,提出在云化工业软件全生命周期管理中引入内生安全方法的应对策略,以确保系统的稳定运行和数据的安全可靠.同时,研究论述了云化工业软件内生安全管理体系的建设要点和主要特征,为云化工业软件的安全风险管理提供了具体路径.
With the rapid development of cloud computing technology,cloud based industrial software has become a key driving force for the digital transformation of manufacturing,but it also faces increasingly complex security risks and challenges,which have been widely valued.The security risks of cloud based industrial software mainly come from the technical level,information and communication level,business management level,and external constraint level,include four aspects:technology and archi-tecture,network and access control,personnel and processes,as well as legal and compliance.Based on the analysis of these se-curity risks,a response strategy of introducing endogenous security methods into the full lifecycle management of cloud based in-dustrial software is proposed to ensure the stable operation of the system and the security and reliability of data.At the same time,the study discussed the key points and main characteristics of the construction of an endogenous security management system for cloud based industrial software,providing a specific path for the security risk management of cloud based industrial software.
孟祥曦;姚欢;杜洪涛
国家工业信息安全发展研究中心 系统所,北京 100040
计算机与自动化
云化工业软件安全风险全生命周期管理内生安全
cloud based industrial softwaresecurity risksfull lifecycle managementendogenous security
《网络安全与数据治理》 2024 (007)
8-12 / 5
国家自然科学基金专项项目(T2241023);工业和信息化部工业互联网创新发展工程项目(TC220A056);教育部哲学社会科学研究重大课题攻关项目(23JZD016)
评论