Cyber Resilience, Risk Management, and Security Challenges in Enterprise-Scale Cloud Systems: Comprehensive Review

被引:1
|
作者
Abdi, Abdiaziz [1 ]
Bennouri, Hajar [2 ]
Keane, Anthony [1 ]
机构
[1] Technol Univ, Sch Informat & Cyber Secur, Dublin, Ireland
[2] Technol Univ, Collab, Dublin, Ireland
关键词
Cyber Resilience; Risk Management; Security; Cloud Systems; Vulnerabilities;
D O I
10.1109/MECO62516.2024.10577956
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The cyberthreat landscape is constantly evolving with the rapid development of cloud computing. Today, businesses and consumers rely heavily on cloud infrastructure, which provides high availability and resilient systems. However, cloud and IoT platforms contain vulnerabilities that can compromise data confidentiality, integrity, and availability, leading to disruptions in service operations. These significant challenges pose serious threats such as vulnerabilities, misconfigurations, data breaches, faulty hardware, and application failures with high costs. IBM reports that the average cost of a data breach worldwide is approximately US$4.5 million per incident. This highlights the need for adequately designed resilience systems with high availability and fault tolerance. This paper examines the relationship between resilience and failure in enterprise cloud systems caused by cyberattacks. The metrics for measuring exposure and risk in the cloud and IoT and present quantifiable metrics to assess vulnerability and risk. Additionally, we explore various approaches to mitigate risk and enhance resilience. This study highlights significant research findings that can aid in better understanding this research challenge
引用
收藏
页码:132 / 139
页数:8
相关论文
共 50 条
  • [31] Security in Cloud Computing Systems A Review of Challenges and Solutions for Security in Distributed Computing Environments
    Srivastava, Stuti
    Sudhish, Prem Sewak
    PROCEEDINGS OF THE 2015 39TH NATIONAL SYSTEMS CONFERENCE (NSC), 2015,
  • [32] A Comprehensive Study of Security and Cyber-Security Risk Management within e-Health Systems: Synthesis, Analysis and a Novel Quantified Approach
    Ksibi, Sondes
    Jaidi, Faouzi
    Bouhoula, Adel
    MOBILE NETWORKS & APPLICATIONS, 2023, 28 (01): : 107 - 127
  • [33] A Comprehensive Study of Security and Cyber-Security Risk Management within e-Health Systems: Synthesis, Analysis and a Novel Quantified Approach
    Sondes Ksibi
    Faouzi Jaidi
    Adel Bouhoula
    Mobile Networks and Applications, 2023, 28 : 107 - 127
  • [34] Towards an Integration of Information Security Management, Risk Management and Enterprise Architecture Management - a Literature Review
    Diefenbach, Thomas
    Lucke, Carsten
    Lechner, Ulrike
    11TH IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGY AND SCIENCE (CLOUDCOM 2019), 2019, : 326 - 333
  • [35] Methodology for risk management related to cyber-security of Unmanned Aircraft Systems
    Tran, Trung Duc
    Thiriet, Jean-Marc
    Marchand, Nicolas
    El Mrabti, Amin
    Luculli, Gabriele
    2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, : 695 - 702
  • [36] Enabling Enterprise-Scale Systems using Cloud-based Personal Media Supporting Bring-Your-Own-Application for Digital Media
    Fels, Sidney
    Anacleto, Junia
    2016 DIGITAL MEDIA INDUSTRY AND ACADEMIC FORUM (DMIAF), 2016, : 227 - 229
  • [37] A Comprehensive Risk Management Approach to Information Security in Intelligent Transport Systems
    Vogt T.
    Spahovic E.
    Doms T.
    Seyer R.
    Weiskirchner H.
    Pollhammer K.
    Raab T.
    Rührup S.
    Latzenhofer M.
    Schmittner C.
    Hofer M.
    Bonitz A.
    Kloibhofer C.
    Chlup S.
    SAE International Journal of Transportation Cybersecurity and Privacy, 2021, 4 (01):
  • [38] Electrical energy systems resilience: A comprehensive review on definitions, challenges, enhancements and future proceedings
    Amini, Fariba
    Ghassemzadeh, Saeid
    Rostami, Naghi
    Tabar, Vahid Sohrabi
    IET RENEWABLE POWER GENERATION, 2023, 17 (07) : 1835 - 1858
  • [39] Comprehensive review on intelligent security defences in cloud: Taxonomy, security issues, ML/DL techniques, challenges and future trends
    Belal, Mohamad Mulham
    Sundaram, Divya Meena
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2022, 34 (10) : 9102 - 9131
  • [40] Blockchain in Enterprise Resource Planning Systems: A Comprehensive Review of Emerging Trends, Challenges, and Future Perspectives
    Isbaih, Sara
    Al Noman, Hassan
    Aljarwan, Abdalla
    Al Owais, Ibrahim
    Yosry, Ahmed
    Bahroun, Zied
    MANAGEMENT SYSTEMS IN PRODUCTION ENGINEERING, 2024, 32 (04) : 571 - 586