Introduction
摘要
The benefits of digital transformation of organizations, emerging technologies (e.g., artificial intelligence), and modern information and communication technologies are undeniable. Therefore, regardless of industry, all organizations depend highly on digital products and services, making them more vulnerable to cyber-attacks than ever before. Past incidents have demonstrated the far-reaching consequences (e.g., power outages, disruption of medical care) that can occur when a disruptive attack compromises systems of critical infrastructure providers. Cyber attacks are not limited to large organizations but often affect small and medium enterprises (e.g., Ransomware attacks). In order to increase trust in information systems and cyber infrastructures, countries worldwide adopted new laws and regulations. All these circumstances led to the need for a new discipline “cyber resilience”. Cyber resilience promotes a change in thinking and no longer assumes that information systems can be fully protected from cyber attacks. Therefore, new design principles and techniques must be applied to ensure the resilience of critical functions even if parts of the systems are compromised. This book provides a basic understanding of this new discipline by introducing the cyber resilience foundations.