inklap

INTEGRATION OF INTRUSION DETECTION SYSTEMS INTO THE CORPORATE NETWORK STRUCTURE: APPROACHES, CHALLENGES AND EFFICIENCY OF INCIDENT RESPONSE

Оrest Polotai, Тaras Brych, Nataliia Kukharska, Valentina Yashchuk, Artur Tkachenko · Cybersecurity: Education, Science, Technique · 2025

The article presents a comprehensive study of the integration of intrusion detection systems (IDS/IPS) into the structure of a corporate network, taking into account the requirements of modern cybersecurity, current risks and management approaches in accordance with international standards. The current challenges associated with the growth of the complexity of network infrastructures, the development of targeted attacks and increased requirements for the speed of response to information security incidents are considered. A systematic approach is proposed, which involves the phased implementation of IDS/IPS solutions based on a preliminary analysis of the network architecture, asset classification, vulnerability detection and risk assessment. A corporate network threat model is built, which covers the main types of assets (servers, workstations, routers, access points, authentication services) and typical attack vectors (SQL injections, DDoS, phishing, brute force, malware, etc.). Special attention was paid to the implementation of response processes in accordance with the requirements of the ISO/IEC 27001:2017 standard. The study simulated an information security incident in the fo

📖 افتح في inklap 🔗 DOI 📮 اطلب بحثاً