Kyberturvallisuuden johtaminen ja kehittäminen osana kriittisen infrastruktuurin organisaation toimintaa – Systeemiajattelu
Julkaistu sarjassa
JYU DissertationsTekijät
Päivämäärä
2020Tekijänoikeudet
© The Author & University of Jyväskylä
The structure of the modern society is based on the cooperation of different parts
of the critical infrastructure. Their mutual functional ability depends primarily
on operationally reliable organizations that form systems, i.e. parts of the infrastructural
whole.
This doctoral dissertation focuses on developing cybersecurity leadership
in enterprises and other organizations in the network of national critical infrastructure.
The research emphasizes controlling the continuity of their functional
processes in all operational environments. The dissertation presents different
models of cybersecurity leadership and development for organizations. The focus
is on proactiveness as well as creating trust, preserving reputation and managing
the continuity of functional processes. The research method used was Soft
Systems Methodology, SSM.
While the people, processes and technologies of an organization present its
capabilities, they also contain vulnerabilities. The most central research question
of the dissertation concentrates on cybersecurity leadership procedures and a
comprehensive system review of cybersecurity management in a national critical
infrastructure organization. It means cybersecurity management on all levels of
decision-making (strategic, operative and technical/tactical). Three practical
measures for development are presented: first, embedding new technological solutions
into the organization’s piers cyber security structure, second, drafting
comprehensive cyber security risk assessments and third, preparing contingency
plans in order to improve an organization’s resilience.
In implementing the organizational cybersecurity development measures
presented in the dissertation, the PDCA-method of process improvement can be
applied. These organization-specific measures advance the protection of national
critical infrastructure and thus also cyber self-sufficiency, comprehensive security,
security of supply and both national and organization-specific competitive
advantage.
Keywords: cyber security, national critical infrastructure, system, organization,
process, system, device
...
Julkaisija
Jyväskylän yliopistoISBN
978-951-39-8258-4ISSN Hae Julkaisufoorumista
2489-9003Julkaisuun sisältyy osajulkaisuja
- Artikkeli I: Pöyhönen, J., Lehto, M., 2017. Cyber security creation as part of the management of an energy company. ECCWS 2017: Proceedings of the 16th European Conference on Cyber Warfare and Security (pp. 332-340). Published by Academic Conferences and Publishing International Limited. Reading. UK.
- Artikkeli II: Pöyhönen, J., Nuojua, V., Lehto, M., Rajamäki, J., 2018. Application of Cyber Resilience Review to an Electricity Company. ECCWS 2018: Proceedings of the 17th European Conference on Cyber Warfare and Security (pp. 380-389). Published by Academic Conferences and Publishing International Limited. Reading. UK. http://urn.fi/URN:NBN:fi-fe2018090334420
- Artikkeli III: Pöyhönen, J., Kotilainen, P., Kalmari J., Poikolainen, J., Neittaanmäki, P,. 2019. Cyber security of vehicle CAN bus. ECCWS 2019: Proceedings of the 18th European Conference on Cyber Warfare and Security (pp. 354-363). Published by Academic Conferences and Publishing International Limited. Reading. UK. http://urn.fi/URN:NBN:fi:jyu-202001071036
- Artikkeli IV: Pöyhönen, J., Nuojua, V., Lehto, M., Rajamäki, J., 2019. Cyber Situational Awareness and Information Sharing in Critical Infrastructure Organizations. Digital Transformation, Cyber Security and Resilience. DIGILIENCE 2019. Volume 43, no. 2 (2019): 236-256. http://urn.fi/URN:NBN:fi-fe2019112544255
- Artikkeli V: Pöyhönen, J., Nuojua, V., Lehto, M., Rajamäki, J., 2019. Cyber Situational Awareness in Critical Infrastructure Organizations. Artikkeli on painoprosessissa.
- Artikkeli VI: Pöyhönen, J., Lehto, M., 2020. Cyber security: Trust based architecture in the management of an organization security. Originally published in the proceedings of the 18th European Conference on Cyber Warfare and Security ECCWS2020, 25-26 June 2020, University of Chester, UK, pages 304-313.
- Artikkeli VII: Pöyhönen, J., Rajamäki, J., Ruoslahti, H., Lehto, M., 2020. Cyber Situational Awareness in Critical Infrastructure Protection. Cyber Security of Critical Infrastructure 2020 (CYSEC2020) conference, October 27th, 2020 - October 28th, 2020. Dubrovnik. Croatia. Artikkeli hyväksytty 2.3.2020.
Asiasanat
Metadata
Näytä kaikki kuvailutiedotKokoelmat
- JYU Dissertations [852]
- Väitöskirjat [3578]
Lisenssi
Samankaltainen aineisto
Näytetään aineistoja, joilla on samankaltainen nimeke tai asiasanat.
-
Kyberturvallisuuden hallintorakenteen toiminnan analyysi : tapaus kriittisen infrastruktuurin organisaatiossa
Mustonen, Lassi (2021)Kyberturvallisuudella mahdollistetaan modernien organisaatioiden digitaalinen toiminta ja sitä kautta myös yhteiskunnan toiminta. Keskeisessä roolissa ovat organisaatiot, jotka toimivat kriittisen infrastruktuurin parissa. ... -
Kriittisen infrastruktuurin suojaaminen Suomessa
Kuokkanen, Niko (2020)Tämän kirjallisuuskatsauksena toteutetun kandidaatin tutkielman tavoitteena oli ottaa selvää suomalaisen kriittisen infrastruktuurin vastuista, kattavuudesta ja kyberturvallisuuden suojaustoimista. Tutkimuksen taustalla ... -
Tilannekuvatieto kriittisen infrastruktuurin yrityksen tietojärjestelmien tietoturvallisuudesta
Pöyhönen, Jouni; Nuojua, Viivi (2018) -
Cyber Situational Awareness in Critical Infrastructure Organizations
Pöyhönen, Jouni; Rajamäki, Jyri; Nuojua, Viivi; Lehto, Martti (Springer, 2021)The capability related to cybersecurity plays an ever-growing role on overall national security and securing the functions vital to society. The national cyber capability is mainly composed by resilience of companies running ... -
Kyberturvallisuuden strateginen johtaminen kasvavassa kybermaailmassa Suomessa : kehittämistarpeet uusien haasteiden edessä
Laakso, Sanna (2023)Kybertoimintaympäristö laajenee koko ajan kattaen yhä suuremman osan maailmasta. Kehitys haastaa strategista johtamista, jota on kehitetty Suomessa vasta verrattain vähän aikaa. Aiemmat tutkimukset ovat osoittaneet, että ...
Ellei toisin mainittu, julkisesti saatavilla olevia JYX-metatietoja (poislukien tiivistelmät) saa vapaasti uudelleenkäyttää CC0-lisenssillä.