信息通信技术与政策

信息通信技术与政策

信息通信技术与政策 ›› 2023, Vol. 49 ›› Issue (2): 92-96.doi: 10.12267/j.issn.2096-5931.2023.02.015

专题:网络安全 上一篇    

数据安全中台构筑企业数据生命线

Middle platform of data security builds the lifeline of enterprise data

梁晴   

  1. 绿盟科技集团股份有限公司,北京 100089
  • 收稿日期:2022-12-20 出版日期:2023-02-25 发布日期:2023-03-20
  • 作者简介:
    梁晴 绿盟科技集团股份有限公司安全顾问,从事金融行业数据安全、供应链安全、安全开发、安全规划、安全运营、安全合规等领域网络安全解决方案设计及咨询工作

LIANG Qing   

  1. NSFOCUS Technologies Group Co., Ltd., Beijing 100089, China
  • Received:2022-12-20 Online:2023-02-25 Published:2023-03-20

摘要:

数据是企业的重要资产,数据资产安全管控存在重大的挑战。通过建立企业级的数据安全中台来解决数据资产安全管控的问题,保障数据在全生命周期过程中的安全,构筑企业数据生命线。数据安全中台通过三个步骤提供安全服务能力:首先,将安全业务进行边界判定,形成相对清晰的安全职能边界;然后,将可复用部分抽象成安全模块组件;最后,模块组件之间再进行业务化关联和增量包装以提供安全能力。本研究方法可以解决数据安全行业“重复造轮子”问题,进一步解决传统数据安全平台的安全边界划分及数据孤岛问题。

关键词: 安全中台, 数据安全中台, 安全能力抽象, 安全职能划分, 安全能力复用

Abstract:

Data is an important asset of an enterprise, and there are significant challenges in data security management. This paper proposes to solve the problem of data security management by establishing an enterprise-level middle platform of data security, ensure data security in the whole life cycle, and build the lifeline of enterprise data. The middle platform of data secrity provides security service capability through three steps: first, judge the security business boundary to form a relatively function boundary; Then the reusable part is abstracted into a security module component; Finally, business association and incremental packaging are performed between module components to provide security capabilities. The method in this paper can solve the problem of “repeatedly building wheels” in the data security industry, and further solve the problem of security boundary division and data islands of traditional platforms.

Key words: middle platform of security, middle platform of data security, abstraction of security capability, security boundary division, reuse of security capability

中图分类号: