Цель работы: проанализировать действующие изменения требований к безопасности государственных информационных систем и разработать подходы к их внедрению в современных условиях.
Результаты исследования: рассмотрены изменения требований российских нормативных документов в области информационной безопасности в государственных информационных системах, не затрагивая информацию по государственной тайне. На основе анализа современного применения практического опыта в области защиты информации в организациях, предложены рекомендации по обновлению систем защиты в соответствии с нововведениями. Показаны основные проблемы развития систем безопасности крупных информационных систем и пути их решения, определены существенные изменения в законодательстве о защите информации, разработаны предложения по рекомендации обновления систем защиты в соответствии с нововведениями, для обеспечения безопасности информации, обрабатываемой в информационно-телекоммуникационных системах предприятий, организаций, воинских частей и учреждений.
Практическая полезность: заключается в том, что в рамках единого исследования проводится системное документальное сравнение ряда нормативных правовых документов и выработаны рациональные подходы к реализации требований в современных условиях, которые могут быть применены при обеспечении безопасности информации в информационных системах предприятий, организаций, воинских частей и учреждений.
The purpose of the work: to analyze the current changes in the requirements for the security of state information systems and to develop approaches to their implementation in modern conditions.
Results of the study: changes in the requirements of Russian regulatory documents in the field of information security in state information systems are considered, without affecting information on state secrets. Based on the analysis of the modern application of practical experience in the field of information security in organizations, recommendations are proposed for updating protection systems in accordance with innovations. The main problems of the development of security systems of large information systems and ways to solve them are shown, significant changes in the legislation on information protection are identified, proposals are developed to recommend updating protection systems in accordance with innovations, to ensure the security of information processed in the information and telecommunication systems of enterprises, organizations, military units and institutions.
Practical usefulness: the fact that within the framework of a single study, a systematic documentary comparison of a number of regulatory legal documents is carried out and rational approaches to the implementation of requirements in modern conditions are developed, which can be applied to ensure the security of information in the information systems of enterprises, organizations, military units and institutions.
Источники финансирования не указаны.
No funding sources reported.
- Volostnykh V. A. Organization of the protection of confidential information at the enterprise by means of cryptographic protection / V. A. Volostnykh, P. A. Vorobyov, V. A. Zadboev // Security Prospects – 2024: Collection of materials from the II scientific and technical conference dedicated to information security, St. Petersburg, June 19–20, 2024. – St. Petersburg: OOO «Special Technology Center», 2024. – Pp. 9–13.
- Kostarev S. V., Karganov V. V., Lipatnikov V. A., Volostnykh V. A. Regulatory legal framework of the Russian Federation for ensuring information security. In the book: Information security technologies in the context of cyber confrontation. St. Petersburg, 2020. – Pp. 94–158.
- Vikulova A. Yu., Volostnykh V. A., Kononov P. A., Parfirov V. A. Personal data protection of geographically distributed enterprises. In the collection: Actual problems of infotelecommunications in science and education (APINO, 2021), a collection of scientific articles: in 4 volumes. Saint Petersburg State University of Telecommunications named after prof. M. A. Bonch-Bruevich. Saint Petersburg, 2021. – Pp. 155–160.
- Volostnykh V. A., Zadboev V. A. Creation of secure electronic document management systems designed to process documents containing restricted information. In the Conference Proceedings, Collection of Scientific Articles, 65th Scientific and Technical Conference of Faculty, Researchers, and Postgraduate Students (NTK PPS, 2025), St. Petersburg, SPbSUT, 2025. – Pp. 79–84.
- Vikulova A. Yu., Volostnykh V. A., Kononov P. A., Parfirov V. A. Personal Data Protection of Geographically Distributed Enterprises. In the collection: Current Issues of Infotelecommunications in Science and Education (APINO, 2021), collection of scientific articles: in 4 volumes. Saint Petersburg State University of Telecommunications named after prof. M. A. Bonch-Bruevich. Saint Petersburg, 2021. – Pp. 155–160.
- Zadboev V. A. Analysis of the Capabilities of Domestic Tools Used to Monitor the Information Security of Data Transmission Networks / V. A. Zadboev, N. A. Rogovoy, A. A. Shevchenko // Actual Problems of Infotelecommunications in Science and Education (APINO, 2024): Proceedings of the XIII International Scientific, Technical and ScientificMethodological Conference, Saint Petersburg, February 27–28, 2024. – Saint Petersburg: Saint Petersburg State University of Telecommunications named after prof. M. A. Bonch-Bruevich, 2024. – Pp. 308–313.
- Kryukova E. S. Quality control of electronic reference and educational resources for training specialists in the maintenance and repair of automation control systems and systems / E. S. Kryukova, A.G. Emelyanenko, I. B. Parashchuk // Problems of technical support of troops in modern conditions: Proceedings of the X Interuniversity Scientific and Practical Conference, St. Petersburg, May 16, 2025. – St. Petersburg: Federal State Treasury Military Educational Institution of Higher Education «Military Academy of Communications named after Marshal of the Soviet Union S. M. Budyonny» of the Ministry of Defense of the Russian Federation, 2025. – P. 153–157.
- Parashchuk I. B. Classification features of security monitoring procedures for software and hardware complexes of electronic document management using infocommunication network channels / I. B. Parashchuk, E. S. Vladimirova, L. A. Sayarkin // 65th Scientific and Technical Conference of the Faculty, Researchers and Postgraduate Students (NTK PPS, 2025): Collection of scientific articles. In 3 volumes, St. Petersburg, February 17–21, 2025. – St. Petersburg: St. Petersburg State University of Telecommunications named after prof. M. A. Bonch-Bruevich, 2025. – P. 305–309.
- Fundamentals of constructing certified secure databases of the Russian Federation / A. V. Krasov, A. A. Minyaev, I. E. Pestov, I. A. Ushakov // – Saint Petersburg: Saint Petersburg State University of Telecommunications named after prof. Bonch-Bruevich, 2025. – 189 p.
- Kiselev N. N. Security requirements for a critical information infrastructure facility, taking into account evolving regulatory requirements / N. N. Kiselev, A. V. Krasov // Regional informatics and information security: Proceedings of the Saint Petersburg International Conference and the XIV Saint Petersburg Interregional Conference, St. Petersburg, October 29–31, 2025. – Saint Petersburg: Regional public organization «Saint Petersburg Society of Informatics, Computer Engineering, Communications and Control Systems», 2025. – pp. 162–165.