The article addresses a pressing scientific and practical challenge: the creation of a unified toolkit for the quantitative assessment of the security status of critical information infrastructure objects (CIIO). The relevance of the study is substantiated by an unprecedented increase in the number of cyberattacks (by 74% in 2025 compared to 2024) and a shift in their vector toward operational technologies. The research emphasizes the lack of transparent tools in Ukraine that would allow operators to objectively evaluate their posture and enable regulators to perform effective monitoring. Existing methodologies are grouped according to three characteristics: procedural, verification, and analytical. It is determined that none of them are fully universal under the conditions of full-scale war, necessitating the development of a hybrid approach. The research results present a developed five-stage methodology that transforms a multi-criteria theoretical method into a detailed algorithm. The methodology integrates seven systems of criteria: Governance (GV), Cybersecurity Risk Identification (ID), Cyber Protection (PR), Cyber Incident Detection (DE), Cyber Incident Response (RS), Cyber
📖 افتح في inklap 🔗 DOI 📮 اطلب بحثاً