How cybersecurity and cyber defense combined may lead to cyber resilience and the relationships among cybersecurity, information security, operational technology (OT) security, IT security, and other related disciplines and practices e.g. cyber defense are investigated are described.
Cybersecurity encompasses a broad range of practices, tools and concepts related closely to those of information and operational technology security. Cybersecurity is distinctive in its inclusion of the offensive use of information technology to attack adversaries. Use of the term “cybersecurity” as a key challenge and a synonym for information security or IT security confuses customers and security practitioners, and obscures critical differences between these disciplines. Recommendation for security leaders is that they should use the term “cybersecurity” to designate only security practices related to the defensive actions involving or relying upon information technology and/or operational technology environments and systems. Cyber defense is a computer network defense mechanism which includes response to actions and critical infrastructure protection and information assurance for organizations, government entities and other possible networks [3]. Within this paper, we investigate how cybersecurity and cyber defense combined may lead to cyber resilience and describe the relationships among cybersecurity, information security, operational technology (OT) security, IT security, and other related disciplines and practices e.g. cyber defense. In this regard ends, ways (processes) and means for achieving cyber resilience in today's conditions of emerging security risks are examined. Within the context of cyber resilience the novel model of cyber resilience is presented.