Cybersecurity standards in the certification of digital products
Πρότυπα κυβερνοασφάλειας στην πιστοποίηση ψηφιακών προϊόντων
Master Thesis
Συγγραφέας
Dimopoulos, Karolos
Δημόπουλος, Κάρολος
Ημερομηνία
2024-09Επιβλέπων
Polemi, DespinaΠολέμη, Δέσποινα
Προβολή/ Άνοιγμα
Λέξεις κλειδιά
ISO ; Cybersecurity ; 27001 ; CertificationΠερίληψη
This thesis explores the role of cybersecurity standards in the certification of digital products, focusing on the implementation of international standards like ISO/IEC 15408, ISO/IEC 18045, and the updated ISO/IEC 27001:2022. It examines key regulations such as the European Cybersecurity Act, the Cyber Resilience Act, and the NIS2 Directive, which guide certification processes to ensure security and reliability in digital infrastructures. By analyzing the impact of emerging technologies such as AI and cloud services, the research highlights the challenges these technologies pose to cybersecurity frameworks. A case study involving a company providing digital products is presented, where an external audit is conducted to assess the practical application of ISO/IEC 27001:2022. This audit underscores the critical vulnerabilities that arise during compliance and the necessity for adaptable cybersecurity measures in an evolving technological landscape. The thesis concludes by suggesting that future cybersecurity efforts should focus on integrating AI, blockchain, and other emerging technologies into certification processes to enhance the overall security and resilience of digital products.