工业信息安全2024,Issue(4) :32-42.

基于零信任的数据安全防护体系

A Data Security Protection System Based on Zero Trust

王智民 胡亚琼 李瀚辰
工业信息安全2024,Issue(4) :32-42.

基于零信任的数据安全防护体系

A Data Security Protection System Based on Zero Trust

王智民 1胡亚琼 1李瀚辰1
扫码查看

作者信息

  • 1. 北京六方云信息技术有限公司,北京,10085
  • 折叠

摘要

随着数据资产价值的扩大、业务复杂度的增加、业务的开放性、IT架构复杂性等其他因素,数据所面临的安全风险越来越多元化,来自外部的安全攻击、内部的安全威胁和人为错误都在逐步递增.针对数字时代下数据安全风险的变化,数据安全理念和方法也需要不断演进.本文基于零信任的理念,以数据资源为核心,构建了一套面向业务数据流转的动态、按需防护的数据安全防护体系.本文首先从数据安全治理的概念和主要的数据安全技术出发,提出了数据安全总体架构,设计了一套基于零信任思想的数据安全防护系统,并详细阐述了各数据子系统的设计与实现过程.

Abstract

With the expansion of data asset value,the increase of business complexity,the openness of business,the complexity of IT architecture,and other factors,the security risks faced by data are becoming increasingly diversified.External security attacks,internal security threats,and human errors are gradually increasing.In response to the changes in data security risks in the digital age,data security concepts and methods also need to evolve continuously.This article is based on the concept of zero trust,with data resources as the core,and constructs a dynamic and on-demand data security protection system for business data flow.This article first starts with the concept of data security governance and the main data security technologies,proposes the overall architecture of data security,designs a data security protection system based on the zero trust concept,and elaborates on the design and implementation process of each data subsystem.

关键词

数据安全治理/零信任/数据安全防护系统/安全运营

Key words

Data Security Governance/Zero Trust/Data Security Protection System/Safe Operation

引用本文复制引用

出版年

2024
工业信息安全
国家工业信息安全发展研究中心

工业信息安全

ISSN:2097-1176
段落导航相关论文