Developers: | Axenix (formerly Aksencher Russia) Aksenix |
Date of the premiere of the system: | 2023/01/23 |
Branches: | Information security |
Technology: | IT outsourcing |
The main articles are:
2023: Launch of Information Security Risk Quantification Service
Axenix (ex-Accenture) announced on January 23, 2023 that as part of the development of the cybersecurity direction, it is introducing a quantitative assessment of information security risks to the market. This will allow customers to reduce the likely losses from cybercriminals and optimize information security costs.
According to the generally accepted approach, the total cost of ensuring information security in the organization should not exceed the amount of potential damage from a possible DDoS attack, data leakage, malware actions and other incidents. That is, protection against cyber threats should be not only reliable, but also cost-effective.
The information security strategies of world companies are based on a quantitative calculation of the potential damage from cyber threats expressed in money. In Russia, this trend is in the formation stage. According to Axenix estimates, the methodology for quantitative assessment of information security risks is used at the beginning of 2023 by no more than 20% of Russian commercial organizations.
To implement this process, companies need a mature IT infrastructure, high-quality software solutions of the appropriate class, as well as specialists with competencies simultaneously in information security and in risk assessment.
Шаблон:Quote 'author = says Axenix information security consultant Dmitry Ivliev.
A comprehensive project can last from six months:
- Initially, risk landscape profiling is carried out: information and financial flow routes, critical business processes and systems used are determined;
- further identification of potential threats and targets of attacks, technologies and scenarios of possible attacks, analysis of internal statistics of information security events;
- formation of risk scenarios, accurate determination of the main targets of hacker attacks;
- compiling a list of current IT infrastructure protection measures. At this moment, you can estimate the cost of individual stages and elements of the information security strategy, time and labor costs for its implementation, optimize them;
- training of the customer's employees so that in the future they can engage in self-monitoring of risks on a regular basis.
In Russia, the number of cyber attacks, as well as their power, has seriously increased in 2022. At the same time, the cost of such attacks decreases, they become massive. Therefore, for any business aimed at confident development, the company advises building an information security strategy according to a risk-oriented model, taking into account all potential threats and damage from them. Axenix Information Security Expertise - Ensure that a project of any complexity brings customers the efficiency they expect. commented Dmitry Ivliev.
|