Проблемы внедрения новых подходов к информационной безопасности в энергетической отрасли
Научный журнал Моделирование, оптимизация и информационные технологииThe scientific journal Modeling, Optimization and Information Technology
Online media
issn 2310-6018

Problems of implementing new approaches to information security in the energy industry

Golikov S.E. 

UDC 004.046, 004.056
DOI: 10.26102/2310-6018/2020.28.1

The quality of life of a modern society directly depends on the functioning of the energy sector. Despite the measures taken to protect the energy infrastructure, statistics of information security incidents indicate significant shortcomings in the applied security architecture that are of systematic nature. The likelihood of malicious software penetrating the computer systems of energy companies has increased significantly in recent years, which could have a strong impact on the availability, integrity and confidentiality of technological network systems. In the article analyzed information security (IS) incidents, shown the vulnerability of power facilities not only to well-planned attacks, but also to ordinary malicious software. The features of using the principles of information security in the energy sector are identified, the landscape of existing threats and vulnerabilities is described, the shortcomings of the applied security model are identified. The author gives a generalized characteristic of the “zero trust” model, which is proposed to be used at power supply facilities, and provides a comparative analysis of two approaches to information security. The application of the developed roadmap for the implementation of a new information security concept, supplemented by a description of ways to minimize operational risks, can significantly improve the quality of services provided for critical business applications, provide reliable protection against modern information security threats and data leaks, and improve harmonization with the requirements of the legislation for safety.

Golikov Sergei Evgenievich

Email: kcl@mail.ru

Federal State Autonomous Educational Institution of Higher Education "Sevastopol State University", Sevastopol

Sevastopol, Russian Federation

Keywords: information security in the energy sector, the concept of zero trust, information security threats, information security incidents, information security models, vulnerability management, minimum privileges

For citation: Golikov S.E. Problems of implementing new approaches to information security in the energy industry. Modeling, Optimization and Information Technology. 2020;8(1). URL: https://moit.vivt.ru/wp-content/uploads/2020/02/Golikov_1_20_1.pdf DOI: 10.26102/2310-6018/2020.28.1 (In Russ).


Full text in PDF

Published 31.03.2020