Security Management Methods for Infocommunication Systems
摘要
Currently, several methods for managing the security of infocommunication systems are known, and a number of modifications of existing methods are also distinguished. When using the administrative-organizational approach to managing security processes, the task of selecting and configuring information protection tools is solved at first. Subsequently, the administrator evaluates the functioning of the system and changes the structure of the protection system, i.e. implementation of new information protection tools, removal of old and inefficient ones, as well as reconfiguration of parameters to improve the efficiency of the system as a whole. Taking into account the shortcomings of the administrative and organizational method of security management, in order to increase the efficiency and effectiveness of the security management of infocommunication systems, automatic generation of impacts on the subjects of management is used in order to prevent emergency situations. Based on the analysis of modern approaches and means of managing the security of computer systems and highlighting the shortcomings of their implementations, an architecture for adaptive control of the security of infocommunication systems with a built-in decision support system is proposed, which provides a proactive response of security tools to the actions of intruders. A variant of the optimal modification of the security system to minimize the possible damage from the implementation of threats in accordance with the specified restrictions based on the adaptive modification of the protection system in infocommunication systems is shown.