AIES Wien

22.08.2017 / ENGLISH / SITEMAP / NEWSLETTER / FACEBOOK

Cyber-Risk and Cyber-Security

David B. Skillicorn / Christian Leuprecht: Beyond the Castle Model of Cyber-Risk and Cyber-Security, AIES Studien 4/2015

PDF-Download

04.09.2015 / Vorige / Nächste Publikation



The predominant metaphor for secure computing today is defence in depth: higher, better layers of walls. This article explains why that approach is as outmoded for cybersecurity today as it became for physical security centuries ago. Three forces are undermining the castle model as a practical security solution. First, organizations themselves tear down their walls and make their gateways more porous because it pays off in terms of better agility and responsiveness – they can do more, faster and better. Second, technological developments increasingly destroy walls from the outside as computation becomes cheaper for attackers, and the implementation of virtual walls and gateways becomes more complex, and so contains more vulnerabilities to be exploited by the clever and unscrupulous. Third, changes in the way humans and technology interact, exemplified (but not limited to) the Millennial generation, blur and dissolve the concepts of inside and outside, so that distinctions become invisible, or even unwanted, and boundaries become annoyances to be circumvented. A new approach to cybersecurity is needed: Organizations and individuals need to get used to operating in compromised environments. The article’s conclusion operationalize this strategy in terms of a paradigm shift away from a Castle Model and towards a more nuanced form of computation and data assurance.

Links zum Thema

Demography and Security
Christian Leuprecht: International security strategy: The socio-demographic and economic dawn of a new day, AIES Studien 3/2011, ISSN 2222-9841.
21.12.2011 / Mehr

Ansprechpartner
Christian Leuprecht, Ph.D.

AIES Associate Fellow

Neue Veranstaltungsreihe

Konzept zur Veranstaltungsreihe Deutsch-österreichische Nachwuchsdebatten zur Zukunft der EU des AIES und des Kölner Forum für Internationale Beziehungen und Sicherheitspolitik e. V.

PDF-Download

Über uns

Das Austria Institut für Europa und Sicherheitspolitik / AIES befasst sich mit der Weiterentwicklung der EU und ihrer Außen-, Sicherheits- und Verteidigungspolitik. Neben der wissenschaftlichen Analyse erarbeitet das AIES praxisorientierte Empfehlungen für die Politik. Das

EU Projekt 2015-2018

IECEU - Improving the Effectiveness of Capabilities in EU Conflict Prevention

AIES Fokus

AIES Fokus 2/2017: South American Integration
Stephanie Polezzeli: The South American Integration Trail: The Southern Integration and the European Union Model, AIES Fokus 2/2017

Webdesign by EGENCY