Skip to content
Review

ANALYSIS OF INFORMATION SECURITY THREATS IN CORPORATE NETWORKS AND METHODS OF THEIR NEUTRALIZATION

2026 · EKONOMIKA I UPRAVLENIE: PROBLEMY, RESHENIYA · Vol 5/11, pp. 104-110 · 0 citations

TL;DR

The purpose of the work is to systematize modern threats to information security in corporate networks, analyze methods for their identification and neutralization, as well as identify promising areas for the development of security systems.

Abstract

The article examines modern threats to information security faced by corporate networks, as well as analyzes methods and means of their neutralization. The relevance of the research is due to the rapid digital transformation of business, the transition to remote work formats, the active introduction of cloud technologies and the Internet of Things, which significantly expands the attack surface for intruders. According to analytical reports, the number of successful cyber-attacks on corporate networks increases by 15–20 percent annually, and the average damage from a single attack for a large company can reach several million dollars. The purpose of the work is to systematize modern threats to information security in corporate networks, analyze methods for their identification and neutralization, as well as identify promising areas for the development of security systems. The methodological base of the study includes an analysis of data on cyber-attacks in recent years, an overview of modern information security tools, as well as a summary of best practices in building information security systems.

View source

Similar papers

Open access Jul 2026

The threat assessment process in identifying cybersecurity risks

The article is devoted to the topical issue of analyzing and improving the methods and means of protecting a company's network infrastructure. A company's network contains all the important information that affects the continuity of the company's operations. That is why it is necessary to take a comprehensive approach to its protection. The focus is on building a technological chain for identifying network security risks. The study is based on a thorough analysis of modern literature and information resources, materials from leading companies providing network equipment and network configuration services. The main stages of the technological chain of risk identification are considered, including asset identification, threat assessment, vulnerability detection, consequence and probability assessment, development of risk minimization strategies, as well as monitoring, analysis, and improvement of security measures. The analysis made it possible to identify key aspects that affect the effectiveness of risk management and offer recommendations for improving network security. The process of assessing network security risks, which is critical to ensuring the security of the company's information systems, is also discussed in detail. The key stages of this process are described, starting with identifying assets and threats and ending with developing and implementing risk minimization strategies. The analysis demonstrated the importance of a systematic approach to risk management, including continuous monitoring, adaptation, and improvement of security measures. The findings are important for further developing strategies to protect and secure the company's network infrastructure and are the basis for further research in this area. Key words: cybersecurity; network security; technological chain for determining network security risks; threat assessment process; risk analysis methods; risk acceptance/avoidance table.

T. Korobeinikova, O. Niemkova · 0 citations
Open access Jul 2026

CYBER THREATS TO NATIONAL ECONOMIC SECURITY: DRIVERS AND RESPONSE MECHANISMS

The article examines modern mechanisms for addressing cyber threats within the state economic security system in the context of digital transformation and the growing scale of cyber risks. The study demonstrates that the digitalization of the financial sector, public administration, critical infrastructure, and business processes, while creating new opportunities for socio-economic development, significantly increases the vulnerability of economic systems to cyberattacks, digital fraud, and other forms of cybercrime. The purpose of the study is to generalize international experience and systematize modern mechanisms for addressing cyber threats in the context of ensuring state economic security. The methodological framework is based on the methods of systems analysis, comparative analysis, structural-functional analysis, logical generalization, and graphical visualization of research findings. The article identifies and systematizes the key drivers of cyber threat development, including the growing scale of cyberattacks, increasing economic losses caused by cyber incidents, the growing sophistication of cyber threats, increasing digital interdependence of economic systems, the intensification of hybrid threats, changes in the international regulatory environment, increasing dependence on digital infrastructure, and the human factor. International approaches to cyber risk management are analyzed based on the experience of the European Union, Estonia, the United States, the United Kingdom, and Singapore. Their key characteristics and the potential for adaptation to the Ukrainian context are identified. A comparative analysis of the legal and regulatory framework for countering cyber threats in Ukraine and the European Union is conducted, making it possible to identify priority areas for harmonizing the national cybersecurity system with European standards. The study also identifies key directions for improving the national system for addressing cyber threats, including the development of risk-oriented management, strengthening interagency coordination, expanding public-private partnerships, and implementing modern mechanisms for ensuring digital resilience. The practical implications of the research lie in the possibility of applying its findings to improve national cybersecurity policy, harmonize Ukrainian legislation with European requirements, and enhance cyber risk management mechanisms in the context of the digital transformation of the economy.

I. Tiutiunyk, Xin-Xin Wang · 0 citations
Review Open access Jul 2026

Penetration Testing in System Security

This review's results show that penetration testing is an important part of improving cybersecurity because it helps identify weaknesses before they become problems and reduces risk.

Shruti Agarwal, Shilpi Sharma · 1 citation
2026

Models for identifying threats and assessing the effectiveness of protection in enterprise cybersecurity systems

This article examines modern trends in the use of artificial intelligence technologies in cybersecurity systems in the face of growing digital threats and the increasing complexity of the information infrastructure of retailers. An economic and mathematical model for selecting the optimal strategy for retailers to respond to cyberthreats is proposed. A scenario analysis model for cyberthreats has been developed, taking into account the likelihood of attacks, the vulnerability of the information infrastructure, and the adaptability of defense mechanisms. A payoff matrix for alternative cyberdefense strategies has been created, reflecting the comparative effectiveness of various security models for retailers.

E. Kravchenko, Roman V. Uvarov · 0 citations
Aug 2026

Classification of hybrid threats as a basis for the formation of enterprise security management mechanisms

The article investigates theoretical approaches to the classification of hybrid threats within the enterprise security management system. It is substantiated that the contemporary security environment is characterized by a combination of economic, digital, informational, psychological, personnel-related, and logistical influences that create a complex system of interconnected risks. The study demonstrates that existing approaches to threat classification are primarily developed within the framework of national security, international relations, and cybersecurity, while insufficiently considering the specific features of enterprise functioning under conditions of wartime economy, digital transformation, and increasing environmental uncertainty. Based on the analysis of foreign and Ukrainian scientific research, an authorial approach to the classification of hybrid threats is proposed. The classification is developed according to the source of origin, sphere of influence, nature of impact, speed of implementation, duration, controllability, and scale of consequences. It is argued that such a multidimensional approach enables a more comprehensive understanding of the complex and nonlinear nature of hybrid threats affecting enterprise activities. The study identifies the main groups of hybrid threats to enterprises, including economic, digital, informational, personnel-related, psychological, logistical, energy, legal, regulatory, and reputational threats. It is emphasized that these threats do not exist independently but interact with each other, generating cascading effects and increasing the overall level of uncertainty within the enterprise environment. Particular attention is paid to the relationship between hybrid threats and enterprise security management mechanisms. The article substantiates that the classification of threats should serve not only as an analytical tool but also as a foundation for the formation of appropriate security management mechanisms. An authorial matrix of correspondence between hybrid threats and security management mechanisms is developed, which allows determining priority managerial responses to various categories of threats. The results of the study prove that the effectiveness of enterprise security management depends on the degree of integration of strategic, risk-oriented, personnel, digital, informational, communication, crisis-management, and adaptive-resilience mechanisms. The proposed classification provides a theoretical basis for developing security-oriented management systems, assessing enterprise adaptive resilience, and designing integrated security management models under hybrid threats. Keywords: hybrid threats, security management, enterprise security, economic security, security-oriented management, adaptive resilience, resilience, risk management, cybersecurity, crisis management, enterprise security management mechanisms, hybrid risk classification.

R. Lyzun · 0 citations