Approaches to measuring the risk of cyberattacks in remote banking services of Russia

Purpose.Due to the use of technology in banks their risks of information security breach are rising significantly. In the context of active introduction of remote banking services (RBS) in banking business of Russia, additional study of issues of assessing the risk of cyberattacks on banking automat...

Full description

Bibliographic Details
Main Authors: Alexander A. Berdyugin, Pavel V. Revenkov
Format: Article
Language:English
Published: Joint Stock Company "Experimental Scientific and Production Association SPELS 2019-12-01
Series:Безопасность информационных технологий
Subjects:
Online Access:https://bit.mephi.ru/index.php/bit/article/view/1233
_version_ 1797728374469165056
author Alexander A. Berdyugin
Pavel V. Revenkov
author_facet Alexander A. Berdyugin
Pavel V. Revenkov
author_sort Alexander A. Berdyugin
collection DOAJ
description Purpose.Due to the use of technology in banks their risks of information security breach are rising significantly. In the context of active introduction of remote banking services (RBS) in banking business of Russia, additional study of issues of assessing the risk of cyberattacks on banking automated systems was required. Methods.The methods of financial management, probability theory, system analysis of scientific literature on fundamental and applied research, and a method of graphical interpretation of analyzed phenomena are used. The paper gives a detailed analysis of the concepts of “cyberspace” and “cybersecurity”. Remote banking is considered from the point of view of financial management. Attention is drawn to the factors of work in cyberspace that increase the levels of banking risks. The relationship of cyberattacks on bankingautomated systems and possible consequences for the bank is analyzed. Novelty.Given the wide spread of social engineering methods when committing fraudulent activities on the Internet the measures to increase the cyber literacy of population are needed. The method for assessing the risk of cyberattacks on RBS for use by risk department specialists and employees of internal control services is developed. As a result, considering innovative systems and technologies that await us in the future, the effectiveness of risk assessment for solving current challenges is increased. Results.Attempts are made to formulate the mathematical model of the probabilistic analysis of information security incidents to optimize the algorithm for responding to incidents. Calculations based on the proposed model made it possible to determine the duration of exploitation of vulnerability of RBS, when the probability of preventing an incident exceeds probability of its realization. The findings may be useful for scientific research on the risks of information security breach in RBS.
first_indexed 2024-03-12T11:13:03Z
format Article
id doaj.art-e28fb9c45ece4a428409e986a06b4590
institution Directory Open Access Journal
issn 2074-7128
2074-7136
language English
last_indexed 2024-03-12T11:13:03Z
publishDate 2019-12-01
publisher Joint Stock Company "Experimental Scientific and Production Association SPELS
record_format Article
series Безопасность информационных технологий
spelling doaj.art-e28fb9c45ece4a428409e986a06b45902023-09-02T02:33:52ZengJoint Stock Company "Experimental Scientific and Production Association SPELSБезопасность информационных технологий2074-71282074-71362019-12-01264839210.26583/bit.2019.4.061166Approaches to measuring the risk of cyberattacks in remote banking services of RussiaAlexander A. Berdyugin0Pavel V. Revenkov1Financial University under the Government of the Russian FederationFinancial University under the Government of the Russian FederationPurpose.Due to the use of technology in banks their risks of information security breach are rising significantly. In the context of active introduction of remote banking services (RBS) in banking business of Russia, additional study of issues of assessing the risk of cyberattacks on banking automated systems was required. Methods.The methods of financial management, probability theory, system analysis of scientific literature on fundamental and applied research, and a method of graphical interpretation of analyzed phenomena are used. The paper gives a detailed analysis of the concepts of “cyberspace” and “cybersecurity”. Remote banking is considered from the point of view of financial management. Attention is drawn to the factors of work in cyberspace that increase the levels of banking risks. The relationship of cyberattacks on bankingautomated systems and possible consequences for the bank is analyzed. Novelty.Given the wide spread of social engineering methods when committing fraudulent activities on the Internet the measures to increase the cyber literacy of population are needed. The method for assessing the risk of cyberattacks on RBS for use by risk department specialists and employees of internal control services is developed. As a result, considering innovative systems and technologies that await us in the future, the effectiveness of risk assessment for solving current challenges is increased. Results.Attempts are made to formulate the mathematical model of the probabilistic analysis of information security incidents to optimize the algorithm for responding to incidents. Calculations based on the proposed model made it possible to determine the duration of exploitation of vulnerability of RBS, when the probability of preventing an incident exceeds probability of its realization. The findings may be useful for scientific research on the risks of information security breach in RBS.https://bit.mephi.ru/index.php/bit/article/view/1233cyberspace, risk of cyberattacks, remote banking services, cybersecurity, risk assessment, information security incident.
spellingShingle Alexander A. Berdyugin
Pavel V. Revenkov
Approaches to measuring the risk of cyberattacks in remote banking services of Russia
Безопасность информационных технологий
cyberspace, risk of cyberattacks, remote banking services, cybersecurity, risk assessment, information security incident.
title Approaches to measuring the risk of cyberattacks in remote banking services of Russia
title_full Approaches to measuring the risk of cyberattacks in remote banking services of Russia
title_fullStr Approaches to measuring the risk of cyberattacks in remote banking services of Russia
title_full_unstemmed Approaches to measuring the risk of cyberattacks in remote banking services of Russia
title_short Approaches to measuring the risk of cyberattacks in remote banking services of Russia
title_sort approaches to measuring the risk of cyberattacks in remote banking services of russia
topic cyberspace, risk of cyberattacks, remote banking services, cybersecurity, risk assessment, information security incident.
url https://bit.mephi.ru/index.php/bit/article/view/1233
work_keys_str_mv AT alexanderaberdyugin approachestomeasuringtheriskofcyberattacksinremotebankingservicesofrussia
AT pavelvrevenkov approachestomeasuringtheriskofcyberattacksinremotebankingservicesofrussia