Today's Building Blocks for Digital Trust

2022-10-24 03:02:44
关注

Today's Building Blocks for Digital Trust
Illustration: © IoT For All

Most organizations today know that the future is already here. Digital transformation is upon us, and there is no turning back. Much of the transformation within companies in the last few years was prompted by the necessity created by the pandemic and the rush to work remotely. According to a McKinsey Global Survey of executives, respondents say their companies accelerated the digitization of their customer and supply chain interactions and their internal operations by three to four years because of the pandemic.

Today, whether in the public or private sector, and in virtually every industry, new technologies are enabling us to work differently, but they are also creating new security challenges for everyone. The headlines are awash in news about security breaches and cyberattacks. An increase in attacks on critical infrastructure reveals just how much risk has increased in recent years. In IBM’s annual 2022 IBM Cost of a Data Breach Report, the report cites increased concern over critical infrastructure as a target for cyberattacks globally. The report says ransomware and destructive attacks comprised 28 percent of breaches experienced by critical infrastructure organizations last year.

'While digital trust is critical for security, it must be viewed as foundational for digital transformation and modern business strategy.' -DigiCertClick To Tweet

The stakes are high, perhaps never higher. And as our environments become more complex, connected trust is essential to all types of business. To ensure that customers and partners deem their digital interactions and business processes safe and secure, our data must be trusted from the lowest levels all the way to the cloud. This means trust must extend beyond traditional perimeter boundaries to be embedded in IT infrastructures.

Why Digital Trust?

When building solutions have digital trust at their core, they require three elements:

  1. Authenticated Identity: Individuals, businesses, machines, workloads, containers, services, and anything that connects must be authenticated with a cryptographically unique identity.
  2. Integrity: Objects must be used and transmitted with tamper prevention as well as tools for verifying that the object hasn’t been altered.
  3. Encryption: Data must be secured in transit.

Solid construction starts with a reliable foundation. In digital trust, there are four building blocks of trust that apply to virtually any organization. It is essential for security and IT leaders to implement these foundational elements as part of their digital trust strategy. These building blocks for digital trust are standards, compliance and operations, trust management, and connected trust. Let’s look more closely at each.

Building Blocks of Digital Trust

Standards

Standards are not just about technology; they help determine best practices and define trust for a technology or industry in areas like user experience, data control and privacy, processes, and more.

Compliance and Operations

Compliance and operations define how an organization is governed, what controls they have in place to meet their own standards, how they verify that their partners comply with them, and how they report on this information. This set of activities establishes trust.

Trust Management

Trust management includes the tooling needed to enable the confident adoption of standards across an organization.

Connected Trust

Connected trust is how organizations can extend trust in connected networks, supply chains, and ecosystems to create greater insight and value.

Along with Public Key Infrastructure (PKI), a system of processes, technologies, and policies that allows you to encrypt and sign data, these foundational elements weave together the basis of trust for a digital world.

No Scale for the Future Without Digital Trust

A new report, the State of Digital Trust 2022 research report from ISACA finds almost all respondents (98 percent) believe in the importance of digital trust. But only 12 percent say that their organizations have dedicated staff for digital trust. Digital trust has become a higher priority because to ignore its importance is to put the organization at high risk. Trust, data management, and privacy are now fundamental to brand reputation. Unfortunately, all it takes is one cyberattack to have a lasting impact on business operations, reputation, or financial outcomes. Organizations that overlook digital trust could end up with millions of dollars in losses and reputational damages that take years to repair.

Digital trust in 2022 is more than just the creation and handling of digital certificates. Many new technologies have changed the way we do business and interact, from connected devices to remote work, artificial intelligence, and blockchain. But in order to truly benefit from new technologies, they must be used responsibly, with digital trust at the core of development and implementation.

While digital trust is critical for security, it must be viewed as foundational for digital transformation and modern business strategy. To move forward, digital trust solutions require a global, standards-based approach, protection, certificate lifecycle management for public and private trust, and the ability to extend into supply chains and connected ecosystems. Devices must also be built with digital trust embedded across the full lifecycle of their products. It is only through trust first that we can truly realize the potential of the technologies that enable business today.

Tweet

Share

Share

Email

  • Artificial Intelligence
  • Blockchain
  • Cloud Software
  • Cybersecurity
  • Digital Transformation

  • Artificial Intelligence
  • Blockchain
  • Cloud Software
  • Cybersecurity
  • Digital Transformation

参考译文
今天的数字信托构建模块
插图:© IoT For All 如今,大多数组织都意识到未来已然到来。数字化转型已势在必行,我们已无法回头。近年来,企业内部的许多转型是由疫情带来的必要性所推动,以及员工远程办公的迅速需求。根据麦肯锡对全球高管的一项调查,受访者表示,由于疫情的影响,其公司将客户和供应链互动以及内部运营的数字化进程提前了三到四年。如今,无论是在公共还是私营部门,几乎各行各业中,新技术都在改变我们的工作方式,但它们也给每个人带来了新的安全挑战。各大头条新闻频频报道安全漏洞和网络攻击事件。近年来,对关键基础设施的攻击数量增加,揭示了风险的显著上升。在IBM的2022年度《数据泄露成本报告》中,报告指出全球对关键基础设施成为网络攻击目标的担忧日益增加。报告指出,勒索软件和破坏性攻击占关键基础设施组织去年经历的数据泄露事件的28%。 “尽管数字信任对安全至关重要,但它更应被视为数字化转型和现代商业战略的基础。” —— DigiCert 目前,风险之高可能是前所未有的。而且,随着我们所处的环境日益复杂,连接的信任变得对各类企业至关重要。为了确保客户和合作伙伴认为其数字互动和业务流程是安全可靠的,我们的数据必须从最底层一直到云端都值得信赖。这意味着信任必须超越传统的边界,嵌入到IT基础设施中。 为什么数字信任如此重要? 在构建以数字信任为核心的解决方案时,需要三个要素: 1. **认证身份**:个人、企业、机器、工作负载、容器、服务,以及任何需要连接的实体,都必须拥有经过加密的唯一身份进行认证。 2. **完整性**:对象必须通过防篡改机制使用和传输,并具备验证对象未被修改的工具。 3. **加密**:数据必须在传输过程中加以保护。 坚实的基础始于可靠的核心。在数字信任中,有四个适用于几乎所有组织的信任构建模块。安全和IT领导者必须将这些基础要素作为其数字信任战略的一部分予以实施。这四个构建模块分别是:**标准、合规与运营、信任管理、以及连接信任**。 让我们更详细地了解每一个模块:### 数字信任的构建模块 **标准** 标准不仅仅是关于技术;它们帮助确定最佳实践,并为特定技术或行业定义信任,例如用户体验、数据控制与隐私、流程等方面。 **合规与运营** 合规与运营定义了组织的治理方式,他们为满足自身标准所采取的控制措施,他们如何验证合作伙伴是否符合这些标准,以及如何报告这些信息。这套活动建立信任。 **信任管理** 信任管理包括在组织内部实现标准所必需的工具。 **连接信任** 连接信任是组织如何在连接网络、供应链和生态系统中扩展信任,从而创造更大的洞察力和价值。 配合公钥基础设施(PKI)——一套允许你加密和签署数据的过程、技术和政策系统,这些基础构建模块共同构成了数字世界信任的基础。 ### 没有数字信任,就没有未来的规模 一项新的报告——ISACA发布的《2022年数字信任现状研究报告》发现,几乎所有受访者(98%)都相信数字信任的重要性。但只有12%的人表示,他们的组织配备了专门的数字信任人员。数字信任已经成为更高的优先事项,因为忽视其重要性意味着将组织置于高风险之中。信任、数据管理和隐私,如今已成为品牌声誉的基础。不幸的是,一次网络攻击就足以对企业的运营、声誉或财务结果造成长期影响。忽视数字信任的企业可能会面临数百万美元的损失和声誉损害,而修复这些损害可能需要多年时间。 2022年的数字信任,已不仅仅是数字证书的创建和管理。许多新技术改变了我们的工作方式和互动方式,从连接设备到远程办公、人工智能和区块链。但为了真正从这些新技术中受益,它们必须被负责任地使用,并将数字信任作为开发和实施的核心。 虽然数字信任对安全至关重要,但它更应被视为数字化转型和现代商业战略的基础。为了向前发展,数字信任解决方案需要一种基于全球标准的方法、针对公共和私人信任的证书生命周期管理,以及扩展至供应链和连接生态系统的能力。设备也必须在其产品全生命周期中嵌入数字信任。 只有以信任为先,我们才能真正实现推动当今业务的技术潜力。 推特 分享 分享 邮件 人工智能 区块链 云软件 网络安全 数字化转型
您觉得本篇内容如何
评分

评论

您需要登录才可以回复|注册

提交评论

广告
提取码
复制提取码
点击跳转至百度网盘