Оценка эффективности криптографических и организационных мер защиты электронного документооборота на основе анализа реальных компьютерных инцидентов

Бесплатный доступ

В статье проведена оценка эффективности криптографических и организационных мер защиты систем электронного документооборота (ЭДО) на основе анализа реальных компьютерных инцидентов. Рассмотрены ключевые нормативные документы РФ, определены криптографические и организационные меры защиты, проведен их качественный анализ. Проанализированы реальные инциденты в сфере ЭДО, выявлены причины неэффективности отдельных мер и сформулированы рекомендации по совершенствованию комплексной защиты.

электронный документооборот \ информационная безопасность \ криптографическая защита \ организационные меры \ электронная подпись \ шифрование \ разграничение доступа \ инциденты

Короткий адрес: https://sciup.org/149151799

IDS: 149151799   |   УДК: 004.056.5:003.26   |   DOI: 10.15688/NBIT.jvolsu.2025.3.4

Evaluation of the effectiveness of cryptographic and organizational measures to protect electronic document management based on the analysis of real computer incidents

The article assesses the effectiveness of cryptographic and organizational measures to protect electronic document management (EDM) systems by analyzing realworld computer incidents. The authors review key Russian regulatory documents, define relevant cryptographic and organizational measures, and conduct their qualitative analysis. The cryptographic framework includes the use of electronic digital signatures (EDS) and encryption, ensuring data confidentiality, integrity, and authenticity. Organizational measures encompass access control, security policies, user training, and activity monitoring, aimed at mitigating the human factor. The core of the study is an analysis of recent incidents (2023– 2025) based on reports from leading cybersecurity companies. The analysis reveals a consistent trend: most EDM security breaches stem from organizational vulnerabilities – such as excessive privileges, poor EDS lifecycle management, and lack of user awareness – rather than from breaches of cryptographic algorithms themselves. Incidents often involve compromised accounts, insider threats, and social engineering. The conclusion emphasizes that while cryptographic tools provide an essential mathematical security foundation, their effectiveness is critically dependent on robust organizational practices. For reliable EDM protection, a holistic approach is necessary, integrating up-to-date cryptographic means with strict implementation of the principle of least privilege, comprehensive logging and monitoring, and regular employee training. Recommendations for improving the security posture of EDM systems are formulated based on the identified incident patterns.