Approaches to measuring the risk of cyberattacks in remote banking services of Russia
Purpose.Due to the use of technology in banks their risks of information security breach are rising significantly. In the context of active introduction of remote banking services (RBS) in banking business of Russia, additional study of issues of assessing the risk of cyberattacks on banking automat...
Main Authors: | , |
---|---|
Format: | Article |
Language: | English |
Published: |
Joint Stock Company "Experimental Scientific and Production Association SPELS
2019-12-01
|
Series: | Безопасность информационных технологий |
Subjects: | |
Online Access: | https://bit.mephi.ru/index.php/bit/article/view/1233 |
_version_ | 1797728374469165056 |
---|---|
author | Alexander A. Berdyugin Pavel V. Revenkov |
author_facet | Alexander A. Berdyugin Pavel V. Revenkov |
author_sort | Alexander A. Berdyugin |
collection | DOAJ |
description | Purpose.Due to the use of technology in banks their risks of information security breach are rising significantly. In the context of active introduction of remote banking services (RBS) in banking business of Russia, additional study of issues of assessing the risk of cyberattacks on banking automated systems was required. Methods.The methods of financial management, probability theory, system analysis of scientific literature on fundamental and applied research, and a method of graphical interpretation of analyzed phenomena are used. The paper gives a detailed analysis of the concepts of “cyberspace” and “cybersecurity”. Remote banking is considered from the point of view of financial management. Attention is drawn to the factors of work in cyberspace that increase the levels of banking risks. The relationship of cyberattacks on bankingautomated systems and possible consequences for the bank is analyzed. Novelty.Given the wide spread of social engineering methods when committing fraudulent activities on the Internet the measures to increase the cyber literacy of population are needed. The method for assessing the risk of cyberattacks on RBS for use by risk department specialists and employees of internal control services is developed. As a result, considering innovative systems and technologies that await us in the future, the effectiveness of risk assessment for solving current challenges is increased. Results.Attempts are made to formulate the mathematical model of the probabilistic analysis of information security incidents to optimize the algorithm for responding to incidents. Calculations based on the proposed model made it possible to determine the duration of exploitation of vulnerability of RBS, when the probability of preventing an incident exceeds probability of its realization. The findings may be useful for scientific research on the risks of information security breach in RBS. |
first_indexed | 2024-03-12T11:13:03Z |
format | Article |
id | doaj.art-e28fb9c45ece4a428409e986a06b4590 |
institution | Directory Open Access Journal |
issn | 2074-7128 2074-7136 |
language | English |
last_indexed | 2024-03-12T11:13:03Z |
publishDate | 2019-12-01 |
publisher | Joint Stock Company "Experimental Scientific and Production Association SPELS |
record_format | Article |
series | Безопасность информационных технологий |
spelling | doaj.art-e28fb9c45ece4a428409e986a06b45902023-09-02T02:33:52ZengJoint Stock Company "Experimental Scientific and Production Association SPELSБезопасность информационных технологий2074-71282074-71362019-12-01264839210.26583/bit.2019.4.061166Approaches to measuring the risk of cyberattacks in remote banking services of RussiaAlexander A. Berdyugin0Pavel V. Revenkov1Financial University under the Government of the Russian FederationFinancial University under the Government of the Russian FederationPurpose.Due to the use of technology in banks their risks of information security breach are rising significantly. In the context of active introduction of remote banking services (RBS) in banking business of Russia, additional study of issues of assessing the risk of cyberattacks on banking automated systems was required. Methods.The methods of financial management, probability theory, system analysis of scientific literature on fundamental and applied research, and a method of graphical interpretation of analyzed phenomena are used. The paper gives a detailed analysis of the concepts of “cyberspace” and “cybersecurity”. Remote banking is considered from the point of view of financial management. Attention is drawn to the factors of work in cyberspace that increase the levels of banking risks. The relationship of cyberattacks on bankingautomated systems and possible consequences for the bank is analyzed. Novelty.Given the wide spread of social engineering methods when committing fraudulent activities on the Internet the measures to increase the cyber literacy of population are needed. The method for assessing the risk of cyberattacks on RBS for use by risk department specialists and employees of internal control services is developed. As a result, considering innovative systems and technologies that await us in the future, the effectiveness of risk assessment for solving current challenges is increased. Results.Attempts are made to formulate the mathematical model of the probabilistic analysis of information security incidents to optimize the algorithm for responding to incidents. Calculations based on the proposed model made it possible to determine the duration of exploitation of vulnerability of RBS, when the probability of preventing an incident exceeds probability of its realization. The findings may be useful for scientific research on the risks of information security breach in RBS.https://bit.mephi.ru/index.php/bit/article/view/1233cyberspace, risk of cyberattacks, remote banking services, cybersecurity, risk assessment, information security incident. |
spellingShingle | Alexander A. Berdyugin Pavel V. Revenkov Approaches to measuring the risk of cyberattacks in remote banking services of Russia Безопасность информационных технологий cyberspace, risk of cyberattacks, remote banking services, cybersecurity, risk assessment, information security incident. |
title | Approaches to measuring the risk of cyberattacks in remote banking services of Russia |
title_full | Approaches to measuring the risk of cyberattacks in remote banking services of Russia |
title_fullStr | Approaches to measuring the risk of cyberattacks in remote banking services of Russia |
title_full_unstemmed | Approaches to measuring the risk of cyberattacks in remote banking services of Russia |
title_short | Approaches to measuring the risk of cyberattacks in remote banking services of Russia |
title_sort | approaches to measuring the risk of cyberattacks in remote banking services of russia |
topic | cyberspace, risk of cyberattacks, remote banking services, cybersecurity, risk assessment, information security incident. |
url | https://bit.mephi.ru/index.php/bit/article/view/1233 |
work_keys_str_mv | AT alexanderaberdyugin approachestomeasuringtheriskofcyberattacksinremotebankingservicesofrussia AT pavelvrevenkov approachestomeasuringtheriskofcyberattacksinremotebankingservicesofrussia |