小程序
传感搜
传感圈

Today's Building Blocks for Digital Trust

2022-10-24
关注

Today's Building Blocks for Digital Trust
Illustration: © IoT For All

Most organizations today know that the future is already here. Digital transformation is upon us, and there is no turning back. Much of the transformation within companies in the last few years was prompted by the necessity created by the pandemic and the rush to work remotely. According to a McKinsey Global Survey of executives, respondents say their companies accelerated the digitization of their customer and supply chain interactions and their internal operations by three to four years because of the pandemic.

Today, whether in the public or private sector, and in virtually every industry, new technologies are enabling us to work differently, but they are also creating new security challenges for everyone. The headlines are awash in news about security breaches and cyberattacks. An increase in attacks on critical infrastructure reveals just how much risk has increased in recent years. In IBM’s annual 2022 IBM Cost of a Data Breach Report, the report cites increased concern over critical infrastructure as a target for cyberattacks globally. The report says ransomware and destructive attacks comprised 28 percent of breaches experienced by critical infrastructure organizations last year.

'While digital trust is critical for security, it must be viewed as foundational for digital transformation and modern business strategy.' -DigiCertClick To Tweet

The stakes are high, perhaps never higher. And as our environments become more complex, connected trust is essential to all types of business. To ensure that customers and partners deem their digital interactions and business processes safe and secure, our data must be trusted from the lowest levels all the way to the cloud. This means trust must extend beyond traditional perimeter boundaries to be embedded in IT infrastructures.

Why Digital Trust?

When building solutions have digital trust at their core, they require three elements:

  1. Authenticated Identity: Individuals, businesses, machines, workloads, containers, services, and anything that connects must be authenticated with a cryptographically unique identity.
  2. Integrity: Objects must be used and transmitted with tamper prevention as well as tools for verifying that the object hasn’t been altered.
  3. Encryption: Data must be secured in transit.

Solid construction starts with a reliable foundation. In digital trust, there are four building blocks of trust that apply to virtually any organization. It is essential for security and IT leaders to implement these foundational elements as part of their digital trust strategy. These building blocks for digital trust are standards, compliance and operations, trust management, and connected trust. Let’s look more closely at each.

Building Blocks of Digital Trust

Standards

Standards are not just about technology; they help determine best practices and define trust for a technology or industry in areas like user experience, data control and privacy, processes, and more.

Compliance and Operations

Compliance and operations define how an organization is governed, what controls they have in place to meet their own standards, how they verify that their partners comply with them, and how they report on this information. This set of activities establishes trust.

Trust Management

Trust management includes the tooling needed to enable the confident adoption of standards across an organization.

Connected Trust

Connected trust is how organizations can extend trust in connected networks, supply chains, and ecosystems to create greater insight and value.

Along with Public Key Infrastructure (PKI), a system of processes, technologies, and policies that allows you to encrypt and sign data, these foundational elements weave together the basis of trust for a digital world.

No Scale for the Future Without Digital Trust

A new report, the State of Digital Trust 2022 research report from ISACA finds almost all respondents (98 percent) believe in the importance of digital trust. But only 12 percent say that their organizations have dedicated staff for digital trust. Digital trust has become a higher priority because to ignore its importance is to put the organization at high risk. Trust, data management, and privacy are now fundamental to brand reputation. Unfortunately, all it takes is one cyberattack to have a lasting impact on business operations, reputation, or financial outcomes. Organizations that overlook digital trust could end up with millions of dollars in losses and reputational damages that take years to repair.

Digital trust in 2022 is more than just the creation and handling of digital certificates. Many new technologies have changed the way we do business and interact, from connected devices to remote work, artificial intelligence, and blockchain. But in order to truly benefit from new technologies, they must be used responsibly, with digital trust at the core of development and implementation.

While digital trust is critical for security, it must be viewed as foundational for digital transformation and modern business strategy. To move forward, digital trust solutions require a global, standards-based approach, protection, certificate lifecycle management for public and private trust, and the ability to extend into supply chains and connected ecosystems. Devices must also be built with digital trust embedded across the full lifecycle of their products. It is only through trust first that we can truly realize the potential of the technologies that enable business today.

Tweet

Share

Share

Email

  • Artificial Intelligence
  • Blockchain
  • Cloud Software
  • Cybersecurity
  • Digital Transformation

  • Artificial Intelligence
  • Blockchain
  • Cloud Software
  • Cybersecurity
  • Digital Transformation

参考译文
今天的数字信托构建模块
今天的大多数组织都知道未来已经到来。数字变革正在向我们袭来,没有回头路可走。过去几年,企业内部的很大一部分转型是由疫情带来的必要性和远程工作的热潮推动的。根据麦肯锡全球高管调查,受访者表示,由于疫情,他们的公司加快了客户和供应链互动以及内部运营的数字化进程,时间提前了三到四年。今天,无论是在公共部门还是私营部门,几乎在每个行业,新技术都使我们能够以不同的方式工作,但它们也给每个人带来新的安全挑战。关于安全漏洞和网络攻击的新闻铺天盖地。针对关键基础设施的袭击事件增多,表明近年来风险增加了多少。在IBM的年度《2022年IBM数据泄露成本报告》中,该报告指出,人们越来越担心关键基础设施成为全球网络攻击的目标。报告称,勒索软件和破坏性攻击占去年关键基础设施组织遭遇的入侵的28%。风险很高,或许从未如此之高。随着我们的环境变得越来越复杂,相互关联的信任对所有类型的业务都至关重要。为了确保客户和合作伙伴认为他们的数字交互和业务流程安全可靠,我们的数据必须从最低级别一直到云端都是可信的。这意味着信任必须超越传统的边界,嵌入到IT基础设施中。当构建以数字信任为核心的解决方案时,它们需要三个要素:坚实的建设始于可靠的基础。在数字信任中,有四个构建信任的模块,几乎适用于任何组织。对于安全和It领导者来说,将这些基本要素作为其数字信任战略的一部分是至关重要的。数字信任的构建模块包括标准、遵从和操作、信任管理和连接信任。让我们更仔细地看看每一个。标准不仅仅与技术有关;它们帮助确定最佳实践,并在用户体验、数据控制和隐私、流程等领域定义对技术或行业的信任。法规遵循和操作定义了一个组织是如何被治理的,他们有什么控制来满足他们自己的标准,他们如何验证他们的合作伙伴遵守这些标准,以及他们如何报告这些信息。这一系列活动建立了信任。信任管理包括支持在整个组织中自信地采用标准所需的工具。关联信任是指组织如何在关联网络、供应链和生态系统中扩展信任,以创造更大的洞察力和价值。公钥基础设施(Public Key Infrastructure, PKI)是一种流程、技术和策略系统,允许对数据进行加密和签名,这些基本元素一起构成了数字世界的信任基础。来自ISACA的一份新报告《数字信任2022年状况研究报告》发现,几乎所有受访者(98%)都相信数字信任的重要性。但只有12%的人表示,他们的组织有专门的员工负责数字信任。数字信任已成为更高的优先级,因为忽视它的重要性将使组织处于高风险之中。信任、数据管理和隐私现在是品牌声誉的基础。不幸的是,只需一次网络攻击就能对企业运营、声誉或财务结果产生持久影响。忽视数字信任的组织可能最终会损失数百万美元,名誉受损,需要数年时间才能修复。 2022年的数字信任不仅仅是数字证书的创建和处理。许多新技术已经改变了我们做生意和互动的方式,从连接设备到远程工作、人工智能和区块链。但是,为了真正从新技术中获益,必须负责任地使用新技术,将数字信任作为开发和实施的核心。尽管数字信任对安全至关重要,但它必须被视为数字转型和现代商业战略的基础。为了向前发展,数字信任解决方案需要一个全球的、基于标准的方法、保护、公共和私人信任的证书生命周期管理,以及扩展到供应链和连接的生态系统的能力。设备还必须在其产品的整个生命周期中嵌入数字信任。只有首先通过信任,我们才能真正认识到使今天的业务成为可能的技术的潜力。
您觉得本篇内容如何
评分

评论

您需要登录才可以回复|注册

提交评论

提取码
复制提取码
点击跳转至百度网盘