{"id":2455,"date":"2019-09-18T07:00:21","date_gmt":"2019-09-18T14:00:21","guid":{"rendered":"https:\/\/www.microsoft.com\/sk-sk\/2019\/09\/18\/why-banks-adopt-modern-cybersecurity-zero-trust-model\/"},"modified":"2022-06-28T11:24:12","modified_gmt":"2022-06-28T18:24:12","slug":"why-banks-adopt-modern-cybersecurity-zero-trust-model","status":"publish","type":"post","link":"https:\/\/www.microsoft.com\/sk-sk\/microsoft-365\/blog\/2019\/09\/18\/why-banks-adopt-modern-cybersecurity-zero-trust-model\/","title":{"rendered":"Pre\u010do si banky osvojuj\u00fa modern\u00fd pr\u00edstup ku kybernetickej bezpe\u010dnosti \u2013 model nulovej d\u00f4very"},"content":{"rendered":"

Mnoh\u00e9 banky sa pri ochrane pred \u0161kodliv\u00fdmi \u00fatokmi v\u00a0s\u00fa\u010dasnosti aj na\u010falej spoliehaj\u00fa na pr\u00edstup zabezpe\u010denia \u201en\u00e1razn\u00edkovej oblasti\u201c, ktor\u00fd sa d\u00e1 prirovna\u0165 k\u00a0hradu obohnan\u00e9mu priekopou. Rovnako ako stredovek\u00e9 hrady chr\u00e1nen\u00e9 kamenn\u00fdmi hradbami, priekopami a\u00a0br\u00e1nami, banky, ktor\u00e9 pou\u017e\u00edvaj\u00fa zabezpe\u010denie n\u00e1razn\u00edkovej oblasti, musia investova\u0165 ve\u013ek\u00e9 prostriedky do n\u00e1razn\u00edkov\u00fdch siet\u00ed ako br\u00e1ny firewall, servery proxy, honeypoty a\u00a0\u010fal\u0161ie n\u00e1stroje na ochranu pred prienikmi. Zabezpe\u010denie n\u00e1razn\u00edkovej oblasti chr\u00e1ni vstupn\u00e9 a\u00a0v\u00fdstupn\u00e9 body siete t\u00fdm, \u017ee overuje \u00fadajov\u00e9 pakety a\u00a0identitu pou\u017e\u00edvate\u013eov, ktor\u00ed vstupuj\u00fa do siete organiz\u00e1cie alebo ju op\u00fa\u0161\u0165aj\u00fa, a\u00a0potom predpoklad\u00e1, \u017ee aktivita vo vn\u00fatri oblasti so spr\u00edsnen\u00fdm zabezpe\u010den\u00edm je relat\u00edvne bezpe\u010dn\u00e1.<\/p>\n

Chytr\u00e9 finan\u010dn\u00e9 in\u0161tit\u00facie sa teraz od tejto paradigmy odkl\u00e1\u0148aj\u00fa a\u00a0za\u010d\u00ednaj\u00fa vyu\u017e\u00edva\u0165 modern\u00fd pr\u00edstup ku kybernetickej bezpe\u010dnosti \u2013 model nulovej d\u00f4very. \u00dastredn\u00fdm princ\u00edpom modelu Nulov\u00e1 d\u00f4vera (Zero Trust) je predvolene nikomu a\u00a0ni\u010domu ned\u00f4verova\u0165 (interne ani externe) a\u00a0pred udelen\u00edm pr\u00edstupu vy\u017eadova\u0165 pr\u00edsne overenie ka\u017edej osoby alebo ka\u017ed\u00e9ho zariadenia.<\/p>\n

M\u00fary hradu maj\u00fa aj na\u010falej d\u00f4le\u017eit\u00fa \u00falohu, ale namiesto \u010fal\u0161\u00edch a\u00a0\u010fal\u0161\u00edch invest\u00edci\u00ed do hrub\u0161\u00edch hradieb a\u00a0hlb\u0161\u00edch priekop prin\u00e1\u0161a model nulovej d\u00f4very zdokonalen\u00fd sp\u00f4sob riadenia pr\u00edstupu k\u00a0identit\u00e1m, \u00fadajom a\u00a0zariadeniam v\u00a0tomto hrade. Nez\u00e1le\u017e\u00ed teda na tom, \u010di intern\u00fd \u00fa\u010dastn\u00edk kon\u00e1 \u0161kodlivo alebo nedbanlivo, alebo \u010di sa tajomn\u00fdm \u00fato\u010dn\u00edkom podar\u00ed prerazi\u0165 hradby \u2013 automatick\u00fd pr\u00edstup k\u00a0\u00fadajom nie je povolen\u00fd.<\/p>\n

Obmedzenia pr\u00edstupu \u201ehradu a\u00a0priekopy\u201c<\/h3>\n

Pokia\u013e ide o\u00a0zabezpe\u010denie digit\u00e1lneho majetku dne\u0161n\u00fdch ve\u013ek\u00fdch podnikov, pr\u00edstup \u201ehradu a\u00a0priekopy\u201c m\u00e1 kritick\u00e9 obmedzenia, preto\u017ee kybernetick\u00e9 hrozby od z\u00e1kladov zmenili defin\u00edciu ochrany. Ve\u013ek\u00e9 organiz\u00e1cie vr\u00e1tane b\u00e1nk musia zvl\u00e1dnu\u0165 rozpt\u00fdlen\u00e9 siete \u00fadajov a\u00a0aplik\u00e1ci\u00ed, ku ktor\u00fdm z\u00edskavaj\u00fa pr\u00edstup zamestnanci, z\u00e1kazn\u00edci aj partneri, lok\u00e1lne aj online. V\u00a0d\u00f4sledku toho je obrana n\u00e1razn\u00edkovej oblasti hradu zlo\u017eitej\u0161ia. Dokonca aj v\u00a0pr\u00edpade, \u017ee priekopa poskytne ochranu pred \u00fato\u010dn\u00edkmi, proti zneu\u017eit\u00fdm identit\u00e1m alebo in\u00fdm intern\u00fdm hrozb\u00e1m, ktor\u00e9 \u010d\u00edhaj\u00fa za hradbami, toho ve\u013ea nezm\u00f4\u017ee.<\/p>\n

Pr\u00edpady uveden\u00e9 ni\u017e\u0161ie predstavuj\u00fa v\u0161etky mo\u017en\u00fd zdroj vystavenia riziku a\u00a0s\u00fa be\u017en\u00e9 v\u00a0bank\u00e1ch, ktor\u00e9 sa spoliehaj\u00fa na bezpe\u010dnostn\u00fd pr\u00edstup \u201ehradu a\u00a0priekopy\u201c:<\/p>\n