安全平行切面:面向企业数字生命体的安全基础设施

发布时间:2023-01-03 作者:韦韬,顾为群,刘宇江 阅读量:

 

摘要:现代数字化企业是一种不断演变进化的生命体。它的架构复杂性会爆炸性增长,不断引入的外部数字化产品服务和行业技术体系演化,会推动其形成内部数字化基因的代差积累。为了应对严峻的网络安全攻击威胁,符合严格的数据安全合规要求,保障企业数字生命体的健康发展,现代企业安全基础设施必须更加适应这种动态复杂性。阐述了安全平行切面,其核心思路是把安全能力融入企业基础设施中并与业务解耦,使安全能力深入业务逻辑,同时实现双方的独立高速发展,在更高维度上实现持续的动态安全防护。

 

关键词:安全平行切面;内生安全;原生安全;企业安全架构;企业数字生命体

 

Abstract: A modern digital enterprise is a living organism that is constantly evolving. The complexity of its architecture will grow explosively, and the continuous introduction of external digital products and services and the evolution of industrial technologies will promote the accumulation of internal digital genes. In order to deal with severe threats of network security attacks, comply with strict data security compliance requirements, and ensure the healthy development of enterprise digital lifeforms, modern enterprise security infrastructure must be more adaptable to this dynamic complexity. The aspect-oriented security is described. The core idea is to integrate security capabilities into enterprise infrastructure and decouple them from business, so that security capabilities can penetrate into business logic, and at the same time both parties can achieve independent and rapid development, and ensure continuous dynamic security in a higher dimension.

 

Keywords: aspect-oriented security; endogenous security; security-native; enterprise security architecture; enterprise as digital lifeforms

在线PDF浏览: PDF