Identifying Risks of Implementing Imposed Security Measures for IT Critical Infrastructure
Ilya I. Livshitz, Olga M. Safonova · 2024
As we know, state-of-the-art entities that are duly classified as IT critical infrastructure entities require a whole complex of technical and other measures to ensure security. Technical measures traditionally include built-in components of automatic control systems, tested for security requirements as part of a single entity. However, the use of extra or “imposed” security measures does not facilitate security of IT critical infrastructure entities. The publication shows examples of computing the total security level of IT critical infrastructure entities with respect to the imposed security measures. The results obtained can be used in the calculation of IT critical infrastructure entity security.