In the current environment of digital transformation of organizations, the complexity and interdependence between electronic communication networks (ECN) and electronic information systems (ES) is increasing, which raises the risks of cyberattacks and breaches of confidentiality, integrity, and availability of data. Insufficient separation between these two levels of IT infrastructure creates conditions for the spread of threats within a single information space, particularly during attacks such as lateral movement or privilege escalation. The article proposes a methodology for multi-level separation of ECN and EIS as a key direction for improving the cyber resilience of organizations. The model is based on the principles of network segmentation, isolation of information domains, role-based access control (RBAC), and the concept of zero trust architecture. Analytical modeling of the impact of segmentation on security indicators, the probability of compromise of critical nodes, the average time to incident, and the attack surface was performed. The simulation results showed that the implementation of the segmentation model reduces the number of compromised nodes by 25-30%, reduces t
📖 افتح في inklap 🔗 DOI 📮 اطلب بحثاً