Accelerate Literature Icon
Want to do a literature review? Try our new Literature Review workflow

РАЗРАБОТКА МЕТОДА ФОРМАЛЬНОЙ ПРОВЕРКИ ПРАВИЛ ФУНКЦИОНИРОВАНИЯ МЕЖСЕТЕВОГО ЭКРАНА ДЛЯ ОБЕСПЕЧЕНИЯ ИНФОРМАЦИОННОЙ БЕЗОПАСНОСТИ В КРЕДИТНО-ФИНАНСОВЫХ ОРГАНИЗАЦИЯХ

  • Abstract
  • Literature Map
  • Similar Papers
Abstract
Translate article icon Translate Article Star icon

The article considers the problem of ensuring information security in credit and financial institutions using a firewall. It is noted that existing methods and means of protection cannot sufficiently counter the constantly evolving cyber threats, and therefore many studies in the field of information security are aimed at finding new methods that can improve the effectiveness of the measures applied. The article analyzes the most common information security threats, provides statistics on incidents related to the use of malware, which remains the main tool of intruders. Also, an analysis of the main problems of ensuring information security is provided using the example of a typical model of remote banking services (RBS). It is noted that the effective operation of the firewall, which is used to protect information in the RBS system, is possible only if a complete, correct and consistent set of rules is specified. The purpose of this article is to develop a method for formal verification of the rules of operation of a firewall to ensure information security in credit and financial institutions. An example of the transition from a verbal description of a set of rules to formal logic and software implementation of code in Python using the Z3 library is given. Recommendations for the application of the developed method in credit and financial institutions are provided. It is concluded that in credit and financial institutions with complex network information systems and numerous security rules, a formal description of these rules must be included during the development stage to enable automated consistency testing using SMT solvers. The developed method addresses this challenge.

Similar Papers
  • PDF Download Icon
  • Research Article
  • Cite Count Icon 1
  • 10.22394/2073-2929-2022-01-119-127
Cooperation Prospects between the EAEU Member States in the Field of Information Security
  • Mar 29, 2022
  • EURASIAN INTEGRATION: economics, law, politics
  • M Yu Ilyina

The article examines the global challenges facing the Eurasian Economic Union (EAEU) associated with significant progress in the development of information and communication technologies (ICT) and tools that form the international information space, and suggests directions for integration to overcome them. The rapid build-up by the countries of the world of their potential in the field of ICT predetermines the strategic nature of the advanced cooperation of the EAEU member states in the field of information security.Aim. Determine the opportunities and prospects for cooperation between the EAEU Member States in the field of information security in the context of unprecedented digitalization of all spheres of life, due to the rapid development of ICT, while the Treaty on the EAEU of May 29, 2014 does not provide for information security issues.Tasks. Consider the existing regulatory framework for bilateral and multilateral relations of the EAEU countries in the field of information security, determine the vector, priorities of the EAEU countries in building their national policies in the field of international information security with integration partners and the world community.Methods. In this paper, using the methods of logical and deductive analysis, possible conditions for cooperation between the EAEU countries in the field of international information security are identified to overcome global challenges and threats and ensure the post-cuperation development of Eurasian integration.Results. The study showed that today information security is not only a necessary condition for ensuring national sovereignty in the economic sphere, but these are issues of ensuring the independence of the state in the social, cognitive, military and political spheres. When considering the EAEU as one of the leading centers of power in the polycentric world, it is necessary to improve the existing paradigm for the development of Eurasian integration, laid down by the Treaty on the EAEU of May 29, 2014, in order not to be in conditions of unjustified expectations, providing for the involvement of issues of a new quality and character.Conclusion. Considering that information policy issues are not regulated by the Treaty on the EAEU of May 29, 2014, seems justified and a very timely launch of the process of considering the possibility of creating a high-level working group on the formation of the Eurasian agenda in the field of international information security.

  • Research Article
  • 10.22394/2073-2929-2024-02-148-158
International Aspect of PRC Information Security Policy
  • Jul 14, 2024
  • EURASIAN INTEGRATION: economics, law, politics
  • B R Semenov

This article examines the international aspect of China’s information security policy. Due to the fact that the information sphere is becoming increasingly important in relations between states, the appeal to the policy of one of the leading international actors — the People’s Republic of China — is in demand and relevant. China’s experience in ensuring information security may be in demand in other countries, including the Russian Federation.Aim. The purpose of the article is to characterize the international aspect of China’s information security policy and to reveal the specifics of China’s interaction with other countries in this area.Tasks. To achieve this goal was conducted a review of key international documents ensuring the international information security of the People’s Republic of China, as well as the country’s domestic legislation in this area. Also the issue of confrontation between China and the United States in the information space was considered.Methods. The study employs the historical method to examine the development of China’s information security system, document analysis to review China’s domestic and international legislation in the field of information security, and comparative analysis to compare the approaches of different countries in the field of cybersecurity.Results. The conducted research highlights the following key outcomes: In the context of the Shanghai Cooperation Organization (SCO), Сhina demonstrates a commitment to the joint development of international legal norms in the field of information security, as well as actively participates in the creation of cooperation agreements in this area, emphasizing the state’s role as an advocate for a multipolar world in cyberspace. Within the framework of interactions with the BRICS countries, China aims to deepen cooperation in the field of information security through a series of initiatives and agreements aimed at developing common approaches and standards. This cooperation contributes to the creation of a unified protection system in the information sphere among the BRICS countries, strengthening their positions in the international information space. In relations with the United States of America, the interaction of China is characterized by competition and confrontation, especially in the context of cybersecurity. This includes differences in approaches to regulating the information space and cyber espionage. Nonetheless, existing contradictions and conflicts underscore the need for dialogue and cooperation to develop common international rules of behavior in cyberspace, which can contribute to ensuring international information security and stability.Conclusions. The international aspect of the China’s information security policy reveals various forms of interaction with other countries, each with its unique features. These relationships form a multi-level system of international information security, in which the PRC plays a key role, aiming to create a balanced and secure information space.

  • Research Article
  • 10.24144/2788-6018.2025.03.2.20
Administrative and legal principles of ensuring the activities of public authorities in the field of information security of Ukraine
  • Jul 4, 2025
  • Analytical and Comparative Jurisprudence
  • V M Kondratenko + 1 more

The article is devoted to the administrative and legal principles of ensuring the activities of public authorities in the field of information security during the current escalation of the armed conflict in Ukraine, which has heightened the relevance of ensuring information security at both the national and global levels. Ensuring information security is of exceptional importance for Ukraine today, as it is driven by the need to counter illegal interference in its information space in order to preserve information resources and protect the population from harmful informational influences. For this reason, modern threats related to information aggression, disinformation, cyberattacks, and other dangers require a clear system of administrative and legal regulation as well as appropriate means for their prevention. Ensuring information security under martial law is critically important for the protection of the state’s sovereignty, its citizens, and the country’s public and national interests. Clear legal regulation of social relations in the field of information security ensures legal order in society and enables the creation of an effective system of public authorities capable, through administrative and legal tools, of protecting the rights, freedoms, and legitimate interests of both citizens and the state as a whole. Information has always played a key role in enabling the state to fulfill its objectives, ensuring the effective operation of all government bodies and the development of statehood. That is why Article 17 of the Constitution of Ukraine establishes that the observance of information security is a crucial element in ensuring Ukraine’s stability and development potential; it is a fundamental function of the state and a responsibility of the entire Ukrainian people. Information security is a component of national security that encompasses the protection of the information space, the prevention of propaganda and disinformation, as well as the protection of the state’s information systems. Information security refers to a state in which the consciousness of citizens and society is safeguarded from harmful informational influence, interference in decision-making processes by state authorities is prevented, the inviolability of private and state databases is guaranteed, their prompt recovery in case of disruption is ensured, and the inevitability of punishment for those who commit corresponding unlawful actions is maintained. Information security is based on the principles of freedom of speech, the right of access to information, its openness, reliability, and the protection of personal privacy.

  • Research Article
  • 10.26565/2304-6201-2025-66-04
Analysis of software for the implementation of OSINT in the field of information security
  • Jun 30, 2025
  • Bulletin of V.N. Karazin Kharkiv National University, series «Mathematical modeling. Information technology. Automated control systems»
  • Maria Drozd + 1 more

Relevance. The global modern cyberspace is characterized by a rapid increase in risks and threats to important information of government agencies, business and society. In such circumstances, open source intelligence (OSINT) is gaining importance as a tool for monitoring the information space, identifying potential threats and ensuring information security. OSINT software allows you to effectively collect, analyze and interpret data from open sources, including social networks, public databases and web resources. This facilitates timely response to cyber threats, identification of vulnerabilities and decision-making to protect information systems and critical infrastructure of the state's information relations entities. Objective. To analyze the characteristics and capabilities of modern specialized software with a view to their effective use as open source intelligence (OSINT) tools in the context of identifying potential threats and ensuring information security of subjects of information relations. Research methods. In the process of writing this article, the author used the methods of technical analysis, comparative and descriptive approach, systematization and classification to study the functionality of OSINT tools, to predict their effectiveness and development prospects. Results. Based on the analysis, the key characteristics of software solutions such as Maltego, TheHarvester, Shodan, ZoomEye, LeakIX, Sublist3r and SubFinder are identified, their suitability for monitoring the information space, identifying risks and vulnerabilities, as well as timely response to eliminate negative consequences are assessed. Recommendations for the optimal use of these tools on modern computers are proposed, taking into account the requirements for hardware, security and process automation. Consideration of the applied aspects of OSINT use makes it possible to formulate practical recommendations for cybersecurity professionals. The analysis makes it possible to integrate the results into training programs for information security specialists. It has been established that the effectiveness of OSINT largely depends on the level of user training and his/her ability to interpret the information received. The material reviewed demonstrates the prospects for using machine learning to automate data collection and filtering processes. The author emphasizes the need to continuously update the knowledge bases and algorithms used in OSINT. The results of the study can be used to create integrated solutions to ensure the cyber resilience of organizations. Conclusions. Open source intelligence (OSINT) is based on the collection, systematization and analysis of data from publicly available sources, such as social networks, websites, public databases and media. The basis of OSINT software is the use of automated tools that allow you to efficiently process large amounts of information, detect connections between data, and identify potential threats to information security. Tools such as Maltego, TheHarvester, Shodan, ZoomEye, LeakIX, Sublist3r, and SubFinder provide tasks ranging from passive data collection to active analysis of network infrastructure, which allows identifying vulnerabilities, monitoring cyberspace, and supporting timely decision-making in the field of information security and information protection. The author classifies OSINT software by functional purpose, allocating three main categories: tools for detection, extraction and aggregation of data. A comparative analysis of such tools as Maltego, TheHarvester, Shodan, ZoomEye, LeakIX, Sublist3r and SubFinder is proposed, with the definition of their key characteristics, including compatibility with operating systems, methods of information collection, process automation and security level, which helps to choose the optimal tool for solving the problems of monitoring cyberspace and countering information threats. Promising directions for further development of OSINT software in the field of cybersecurity of the State are presented.

  • PDF Download Icon
  • Research Article
  • Cite Count Icon 2
  • 10.26583/bit.2020.3.03
ИНФОРМАЦИОННАЯ БЕЗОПАСНОСТЬ ГОСУДАРСТВЕННЫХ ИНФОРМАЦИОННЫХ СИСТЕМ
  • Sep 1, 2020
  • Bezopasnost informacionnyh tehnology
  • Rustem V Penerdji + 1 more

Целью статьи является рассмотрение вопросов связанных с обеспечением безопасности государственных информационных систем в Российской Федерации. Актуальность этих вопросов обусловлена в первую очередь тем, что с каждым годом в России не уменьшается число кибератак (наносящих значительный ущерб государству) на различные сферы её экономики, в том числе, на её государственные информационные системы. Несколько лет назад начала реализацию национальная инициатива в области кибербезопасности – NICE ( « The National Initiative for Cybersecurity Education » ), что не обойдено вниманием российских и других специалистов в области информационной безопасности. К основным направлениям защиты информационной собственности отнесены: охрана (государственной, служебной, коммерческой, банковской, налоговой, страхования, персональных данных и др.) тайн и интеллектуальная собственность. Государственные информационные системы (ГИС) включают информационно-технологические средства и системы, при создании которых опираются на передовые научные изыскания, такие как знания, передовые технологии (ноу-хау) и др. и являются неотъемлемой частью и достаточно сложной системы государственного управления. Предметом исследования являются ГИС, как основа управления государственных органов. В работе первоочередное внимание уделено современным тенденциям в области обеспечения защиты информации ГИС, краткому обзору законодательства в области ГИС и критической информационной инфраструктуре.

  • Research Article
  • 10.36871/ek.up.p.r.2024.05.05.032
ИССЛЕДОВАНИЯ В СФЕРЕ ОБРАЗОВАНИЯ В ОБЛАСТИ КОМПЬЮТЕРНОЙ ИНФОРМАЦИОННОЙ БЕЗОПАСНОСТИ
  • Jan 1, 2024
  • EKONOMIKA I UPRAVLENIE: PROBLEMY, RESHENIYA
  • Hava S Khalieva + 2 more

In the modern era of big data, obtaining information has become more convenient and hidden. Therefore, the information security of networks is becoming increasingly important in the national security strategy. In the learning process, teachers should pay attention to strengthening the penetration of education in the field of network information security in order to better raise students’ awareness of preventing network information security in order to further form good quality, as well as increase information literacy on the Internet among students of educational institutions. This article first analyzes the importance of penetration of education in the field of network information security, and then analyzes the current state of education in the field of network information security in teaching computer networks, and finally, focuses on the study of specific strategies for penetration of education in the field of network information security, in the hope of contributing to the development of the country’s network. The practice of education in the field of information security provides certain suggestions and ideas.

  • Research Article
  • 10.32782/1563-3950-2025-5-3
КОНЦЕПЦІЇ ДЕРЖАВНОЇ ІНФОРМАЦІЙНОЇ ПОЛІТИКИ З МЕТОЮ ГАРАНТУВАННЯ НАЦІОНАЛЬНОЇ ІНФОРМАЦІЙНОЇ БЕЗПЕКИ УКРАЇНИ
  • Jan 1, 2025
  • Праці Наукового товариства ім. Шевченка. Економічний збiрник
  • Ірина Романівна Боднар

The rapid and global development of the information sphere and modern information technologies has a significant impact on the political, economic, socio-cultural, protection, and other components of the development of society and the state. Information resources in modern conditions are becoming a major factor in the life of all spheres of society. The effectiveness of the system of state management of national information resources and ensuring their security largely determines the overall level of information and national security in times of war. Any shortcomings in the structure and functioning of the public administration system lead to losses for society and the state. In this regard, the article considers the key concepts and foundations of state information policy in the field of information and national security. The activity of the state in the information sphere in the conditions of war has been analyzed. In addition, the main directions of the State in the field of information security have been determined. Conceptual approaches to ensuring information security are offered. Strategic information confrontation is an independent and fundamentally new type of confrontation capable of resolving the conflict without the use of armed forces in the traditional sense. Regularities of information confrontation have been determined and its quantitative characteristics have been analyzed. The article conducts formalization of levels of information weapons of the state and mechanisms of evolution depending on the resource potential of a specific state and the influence of the external environment. When developing the concept of the state information policy in order to ensure information and national security of Ukraine, it is necessary to proceed from the need to adopt such fundamental principles as openness of information policy, equality of interests of all participants in information relations, consistency, priority, etc. In this process, the main measures should be aimed at ensuring the state interests of Ukraine and not contradict the social interests of the citizens of the country. We need programs of state funding for information development, ensuring the priority of law over force, etc.

  • PDF Download Icon
  • Research Article
  • 10.17721/1728-2195/2023/1.125-4
МІЖНАРОДНО-ПРАВОВЕ РЕГУЛЮВАННЯ ЗАБЕЗПЕЧЕННЯ ІНФОРМАЦІЙНОЇ БЕЗПЕКИ В РАМКАХ ООН
  • Jan 1, 2023
  • Bulletin of Taras Shevchenko National University of Kyiv. Legal Studies
  • Ivan Bratsuk + 1 more

As a result of the active implementation of digital technologies in all spheres of social life, both international and national legal mechanisms aiming at ensuring the support for the security of the information space stand out in the foreground. The existing legal mechanisms provide for the improvement and harmonization of the legal framework in the field of information security at the national and international levels. In this context, the idea of digital sovereignty determines the use of legal mechanisms that ensure the protection of information security. Due to this faction, a comprehensive study of the general patterns of functioning and development of international legal mechanisms for ensuring information security within the framework of the UN is particularly appropriate, relevant and requires a detailed analysis. The article addresses the analysis and study of UN legal mechanisms in the field of ensuring information security. The purpose of the scientific work is a comprehensive study of the general patterns of functioning and development of international legal mechanisms for ensuring information security within the framework of the UN and the development of scientifically based proposals and recommendations regarding the effective operation of these mechanisms in international and national legal orders (legal systems). The methodological basis of scientific research is general scientific and special legal methods. In particular, a systematic approach, a generalization method, and a systematic analysis were used in the process of scientific research. In the course of the study, there were analyzed: the peculiarities of the functioning of the institutional and legal mechanism of information protection within the framework of UN coordination in the context of the multi-vector system of international security and legal regulation of international cooperation. The article substantiates the expediency of developing an integrated, coordinated information policy of international organizations and institutions with the aim of unifying approaches to ensuring information security. Also, the work summarizes the main problems arising in the international legal regulation of the fight in the field of ensuring information security, and the main threats to international peace and security in the information space, and suggests as well ways to solve them. In this context, the work summarizes the principles of international information security, highlights the main trends in the development of cyber threats in the modern information space and measures necessary for their neutralization. The article analyzes the peculiarities of the functioning of the institutional and legal mechanism of cyber protection in the context of the legislative regulation of international cooperation between international organizations and institutions. In particular, an analysis of the main mechanisms of legal support for cyber protection of the information space was carried out with the aim of their integration into a unified international system of the legal information field. As a result of the study, recommendations were formed. In the field of ensuring information security at the national and international levels, it is necessary to continue and expand activities to create conditions for the formation of an international information security system based on generally recognized principles and norms of international law. In particular, at the UN level, it is necessary to prepare and adopt international legal acts regulating the application of the principles and norms of international law in the field of the use of information and communication technologies. Since there is no single global act that regulates the procedure for combating information threats, in this context, the task of developing the UN Convention on International Information Security is very important. The document should: identify the main threats to international peace and security in the information space; determine the main principles of ensuring international information security; prescribe in detail the principles of international cooperation in the fight against crimes in the information sphere; determine effective and efficient mechanisms of legal responsibility in the information space up to the creation of a special international body for the investigation of crimes in the information sphere.

  • PDF Download Icon
  • Research Article
  • 10.22394/2073-2929-2023-02-132-142
Formation of the Information and Psychological Security System of the Collective Security Treaty Organization
  • Jul 6, 2023
  • EURASIAN INTEGRATION: economics, law, politics
  • R S Vykhodets

The present study is devoted to the analysis of the process of formation at the CS TO level of a system of collective actions to ensure information and psychological security.Aim. To substantiate the relevance of the formation of the information and psychological security system at the CSTO level.Tasks. To identify the information and psychological component in the CSTO collective security strategy, to analyze practical steps at the CSTO level in the field of countering destructive information influence, to determine the regulatory, political and organizational prerequisites for the formation of the CSTO collective information and psychological security system.Methods. In the study, the author used general scientific methods of analysis and synthesis. Special methods were also applied: comparative analysis, informational approach, neoinstitutional approach, critical discourse analysis and content analysis.Results. The study showed that the issues of countering destructive information influence are given considerable attention in the CSTO strategic documents and a number of model laws adopted by the CSTO Parliamentary Assembly, in addition, the relevance of these issues is emphasized in joint statements following meetings in various formats.The term “information and psychological security” is not used in official documents of the CSTO. Currently, issues related to the field of information and psychological security are conceptually included in the general list of tasks in the field of information security. Special attention is paid to countering malicious ideological and psychological influence on the Internet.Today, the main subjects of practical activity in the field of ensuring the information security of the CSTO, including in the field of countering destructive information influence, are the power structures of the member states implementing special operations in the information space. However, taking into account the degree of penetration of Internet technologies and media messages of citizens of the CSTO member states, the effectiveness of such events is unlikely to be able to qualitatively change the situation. That is why it is necessary to create an integrated system of information and psychological security at the CSTO level.Conclusions. In modern conditions of global competition, which have sharply escalated after the start of Russia’s Special Military Operation on the territory of Ukraine in February 2022, the formation of a unified system of collective actions at the CSTO level, providing, on the one hand, reliable protection from targeted malicious influence in the information environment, and on the other, forming a positive ideological and informational agenda of the community, is of particular relevance the historical path of development, the unity of economic and geopolitical tasks, the solution of which will make it possible to implement national development priorities as effectively as possible and ensure the collective security of the participating countries in the modern world.

  • PDF Download Icon
  • Research Article
  • 10.24144/2788-6018.2022.04.43
System of legal remedies for ensuring information security
  • Nov 27, 2022
  • Analytical and Comparative Jurisprudence
  • O.G Yarema + 1 more

The article is devoted to highlighting the current problem of information law, the issue of the system of legal means of ensuring information security. The means of ensuring information security are considered - legal, organizational and technical. The main theoretical provisions regarding legal, organizational and technical means in the context of information security are highlighted; the problems in the researched field are assessed. The legal nature of general legal means of ensuring information security is based on: legislative consolidation of the conceptual apparatus regarding information security; formation of the system of legal support of information security. Information security in the specified aspect is considered as an object of legal protection, regarding the protection of legal rights and interests of the person, society and the state from destructive informational influence and protection of information from illegal transformations. Among the means of ensuring information security, the following are highlighted: forms or methods of recording information; official electronic publication, in particular publication, use of distributed ledger systems, in particular block chain technologies; conducting checks of information in the context of information security; presumption of information security regarding information security. This allows us to specify the directions of legal regulation in the field of information security. One of the legal means of ensuring information security is legal liability, which is provided for by criminal, administrative, civil law, and labor legislation. It is indicated that legal techniques are used to ensure information security: establishment of the right to reliable information; approval of a mandatory form or method of recording information as a means of ensuring information security; implementation of public recognition; monitoring and verification of information in the context of information security; application of the presumption of information protection regarding information security; establishment of legal responsibility.

  • Research Article
  • 10.7256/2454-0633.2022.1.37490
International cooperation in the field of information security: general characteristics and the Russian approach to the study
  • Jan 1, 2022
  • Международное право и международные организации / International Law and International Organizations
  • Andrei Kirillovich Duben

Information security acts as the basic concepts of modern international relations. The level of penetration of information technologies and global networks into society is directly related to the level of development of the country. The Russian Federation has undertaken a number of foreign policy initiatives aimed at ensuring international information security and proclaiming the transparent course taken by the country to create conditions for the establishment of a full-fledged international legal regime for the formation of a secure information environment. The article discusses the main trends in the formation of an international regime to ensure information security. It is revealed that international cooperation makes it possible to establish problem-oriented approaches to identifying threats from other states to the internal information infrastructure and critical facilities of the state in order to undermine territorial integrity. The author comes to the conclusion that interstate agreements in the field of international information security make it possible to establish problem-oriented approaches to identifying threats from other states to the internal information infrastructure and critical facilities of the state in order to undermine territorial integrity. At the same time, the development of joint measures for the development of normative legal norms of international law determined the stages of achieving the specified safety indicators, resource provision and legal support. In order to develop legal support for international information security, further interstate cooperation is necessary in order to seek to increase interaction and improve the international legal framework for the implementation of specific joint initiatives in the field of international information security.

  • Research Article
  • Cite Count Icon 37
  • 10.14505//jarle.v9.1(31).12
Information Security of Russia in the Digital Economy: The Economic and Legal Aspects
  • Sep 20, 2018
  • Journal of Advanced Research in Law and Economics
  • Evgenia Evgenevna Frolova + 4 more

Contemporary realities dictate that technologization, digitalization (transition of the economy and the social sector to digital technologies of functioning and interaction) and the national intellectual capital are the basic competitive advantages of the country that require proper information security. An information security system is a set of corporate rules, standards of work and procedures for ensuring information security formed based on the audit of the company's information system, and the analysis of existing security risks in accordance with requirements of the regulatory documents of the Russian Federation and the provisions of the standards in the field of information security. It is especially important for Russian companies actively interacting with foreign partners. In addressing the problem of information security, the development of the company's unified information security policy occupies a leading place; therefore, this article will be devoted to consideration of these issues.
 The authors of the present study proceed from the objective-subjective predetermination of any phenomena and processes of the external world. In this format, the study is based on general scientific methods: systematic analysis and generalization of normative and practical materials; formal and dialectical logic: analysis, synthesis, induction, deduction, hypotheses, analogies; and special methods of legal research: comparative-legal and historical-legal, system analysis and interpretation of legal norms.
 Based on the analysis, the following conclusions have been made: currently, the most important direction of the national economy development is the protection of vital human and social interests, the key element of which is information security. This study represents the development of a scientific overview of the modern ways to ensure information security in both applied and legal contexts. This article underlines and examines the problems and economic legal features of ensuring information security in Russia. These materials can be used both in preparation of other scientific research and in the development of guidance documents by the power structures.

  • PDF Download Icon
  • Research Article
  • Cite Count Icon 1
  • 10.24833/2071-8160-2022-olf6
Emerging international regime of information security
  • Dec 22, 2022
  • MGIMO Review of International Relations
  • S V Shitkov + 2 more

The article examines burning issues of the formation of an international regime in the field of ensuring international information security in the context of geopolitical transformations and turbulence. The theory of international regimes developed by Russian and foreign researchers is used as a theoretical and methodological basis for the study.Based on the classical definition of the international regime, the authors focus on the norms and principles in the field of international information security. The norms and principles in the field of international information security as the rules of responsible behavior in the global information space were first proposed by Russia and its SCO partners in 2011 as part of a discussion of the UN General Assembly. However, Russian initiatives met with resistance from the United States, resulting in a fragmentation of the existing regulatory regime in the field of international information security. Currently, the relevant norms and principles, which are based on the fundamental principles of international law, enshrined in the UN Charter, are presented in the resolutions of the UN General Assembly, and are also enshrined in the reports of the Group of Governmental Experts on achievements in the field of informatization and telecommunications in the context of international security.The norms fixed in the documents are not mandatory, but they make an important contribution to ensuring international stability by structuring the expectations of various actors in the field of information security. However, the lack of formal consolidation and institutionalization of these norms within the framework of international treaties reduces their legitimacy.

  • Research Article
  • Cite Count Icon 1
  • 10.23939/law2024.42.151
Правові механізми забезпечення інформаційної безпеки в Україні
  • Jun 24, 2024
  • Visnik Nacional’nogo universitetu «Lvivska politehnika». Seria: Uridicni nauki
  • Olha Skochylias-Pavliv

The article considers the legal mechanisms for ensuring information security. It has been proven that today, more than ever, when there is a war in Ukraine, the issue of ensuring information security becomes especially relevant and significant, as the information space becomes a “battlefield” on a par with the war front. Enemy forces actively use informational and psychological operations to destabilize the situation inside our country, create panic, spread fakes and undermine trust in state institutions. In these conditions, the state’s policy becomes important, which should be integral and effective in countering these threats. An effective state policy in the field of information security will help ensure society’s resilience to information threats, strengthen trust in state institutions, and maintain stability in crisis conditions. The author’s understanding of information security is offered as a state of security of information resources and information systems, which ensures their confidentiality, integrity, availability and reliability, as well as protection against unauthorized access, disclosure, modification, destruction and other forms of abuse that may lead to a violation of national security, economic stability and social order. The main components of information security, which are the basis for information security for the state as a whole, individual bodies or private enterprises, are called confidentiality, integrity and availability. The main components of the mechanism for ensuring information security, in the opinion of the author, should be: technical (creation of appropriate technical infrastructure to ensure the functioning of information security), political (development of state policy aimed at ensuring information security) and legal (adoption of high-quality normative legal acts that will determine all information security measures). These three components complement each other and are key to creating an effective system of protection against information threats.

  • Single Book
  • 10.12737/1942595
Обеспечение информационной безопасности в сети Интернет
  • Apr 12, 2023
  • Aleksey Maksurov

The monograph examines the features of legal relations in the field of information security in the global information space. The concept of "cybersecurity" is investigated, the institutional independence of the norms of law on ensuring security in the cyber environment is substantiated from the point of view of the subject and method of legal regulation. Considerable attention is paid to the characteristics of the sources of law on ensuring information security on the Internet. Substantial proposals have been made to improve legal regulation in this area both at the national (primarily Russian) and international levels. A technological approach has been applied to the consideration of security issues in the global information space, within the framework of which the organizational, technical and legal principles of ensuring information security in cyberspace, as well as ways and means of ensuring security in the global information space have been studied. It is given not only an assessment of the level of use of funds, their interrelation and mutual complement, but also the legal characteristics of security tools in the global information space, for example cryptographic. The resources allocated for the implementation of the type of legal technology under study that were not previously allocated in the legal literature, for example, scientific and economic. The features of the protection of personal information on the Internet are considered, as well as modern problems of legal security in the global information environment, including cybersecurity in banking, healthcare, and biometric data security. The problems of international cooperation in the field of information security are highlighted. For a wide range of readers interested in information security issues. It can be useful for students, postgraduates and teachers of law schools and faculties.

Save Icon
Up Arrow
Open/Close
Notes

Save Important notes in documents

Highlight text to save as a note, or write notes directly

You can also access these Documents in Paperpal, our AI writing tool

Powered by our AI Writing Assistant