Πρότυπα και μεθοδολογίες διοίκησης ασφάλειας πληροφοριών στις κρίσιμες υποδομές του αεροπορικού τομέα
Information security management standards and methodologies in critical infrastructures of the aviation industry

View/ Open
Keywords
Ασφάλεια πληροφοριών ; Διαχείριση επικινδυνότητας ; Κρίσιμες υποδομές / οντότητες ; Ανθεκτικότητα ; Αεροπορικός τομέας ; ΚυβερνοασφάλειαAbstract
The implementation and development of an Information Security Management System (ISMS) is a key element of the security policy of modern organizations. An important part of the ISMS is risk management, a process-oriented procedure that is based on a specific methodology and is included in popular standards, which are listed as examples. Information security management is of particular importance for organizations that constitute critical infrastructures, providing goods and services of vital importance to society. The heightened reliance of critical infrastructure on information systems, coupled with the increasing interconnection of these systems, presents a significant escalation of potential threats. Among these threats, cyberattacks pose the most substantial risk. In order to avoid operational disruption, it is necessary to develop appropriate methodologies that will take into account the interdependencies between critical infrastructures, the broader social and economic consequences and the level of resilience of the infrastructure. The aviation sector's dependence on evolving technologies, creates a growing risk landscape, with attackers targeting information system vulnerabilities. Aviation security stakeholders at national and international levels, face the dual challenge of enhancing the resilience of critical infrastructure and entities, while ensuring the safe integration of new technologies.