Pierre-François Blin, T. Aditya, P. B. Santosa, C. Claramunt
{"title":"A Methodological Approach towards Cyber Risk Management in Land Administrations Systems","authors":"Pierre-François Blin, T. Aditya, P. B. Santosa, C. Claramunt","doi":"10.3390/land13010019","DOIUrl":null,"url":null,"abstract":"Cybersecurity risk management in land administration systems is crucial for maintaining the integrity of spatial cadastral data, which faces increasing threats owing to the digital transformation of LAS. This research validates the findings of this preliminary step in the form of a cyber risk management methodology that combines BPMN 2.0 with model business processes implemented by a compliance-based approach using EBIOS Risk Manager. A practical case of land parcel subdivision in Indonesia is analysed to serve as a proof of concept for our proposed methodology. Vulnerabilities are identified and are characterised by a concentration of manual tasks and the absence of systematic controls, resulting in significant risks to data integrity. These findings underscore the urgent need for a proactive approach to strengthen the cyber resilience of LAS. This study attempts to develop a fit-for-purpose reference methodology for cyber risk management specifically tailored to LAS to identify and treat vulnerabilities, threats, risks, and impacts.","PeriodicalId":37702,"journal":{"name":"Land","volume":"87 3","pages":""},"PeriodicalIF":3.2000,"publicationDate":"2023-12-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Land","FirstCategoryId":"93","ListUrlMain":"https://doi.org/10.3390/land13010019","RegionNum":2,"RegionCategory":"环境科学与生态学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q2","JCRName":"ENVIRONMENTAL STUDIES","Score":null,"Total":0}
引用次数: 0
Abstract
Cybersecurity risk management in land administration systems is crucial for maintaining the integrity of spatial cadastral data, which faces increasing threats owing to the digital transformation of LAS. This research validates the findings of this preliminary step in the form of a cyber risk management methodology that combines BPMN 2.0 with model business processes implemented by a compliance-based approach using EBIOS Risk Manager. A practical case of land parcel subdivision in Indonesia is analysed to serve as a proof of concept for our proposed methodology. Vulnerabilities are identified and are characterised by a concentration of manual tasks and the absence of systematic controls, resulting in significant risks to data integrity. These findings underscore the urgent need for a proactive approach to strengthen the cyber resilience of LAS. This study attempts to develop a fit-for-purpose reference methodology for cyber risk management specifically tailored to LAS to identify and treat vulnerabilities, threats, risks, and impacts.
土地管理系统中的网络安全风险管理对于维护空间地籍数据的完整性至关重要,由于土地会计制度的数字化转型,空间地籍数据面临着越来越多的威胁。本研究以网络风险管理方法的形式验证了这一初步研究的结果,该方法结合了 BPMN 2.0 和基于合规性的业务流程模型,并使用 EBIOS 风险管理器加以实施。我们分析了印度尼西亚地块划分的一个实际案例,作为我们所建议方法的概念验证。我们发现了一些薄弱环节,这些薄弱环节的特点是人工任务集中且缺乏系统控制,从而导致数据完整性面临重大风险。这些发现突出表明,迫切需要采取积极主动的方法来加强 LAS 的网络复原力。本研究试图开发一种专门针对 LAS 的网络风险管理参考方法,以识别和处理薄弱环节、威胁、风险和影响。
LandENVIRONMENTAL STUDIES-Nature and Landscape Conservation
CiteScore
4.90
自引率
23.10%
发文量
1927
期刊介绍:
Land is an international and cross-disciplinary, peer-reviewed, open access journal of land system science, landscape, soil–sediment–water systems, urban study, land–climate interactions, water–energy–land–food (WELF) nexus, biodiversity research and health nexus, land modelling and data processing, ecosystem services, and multifunctionality and sustainability etc., published monthly online by MDPI. The International Association for Landscape Ecology (IALE), European Land-use Institute (ELI), and Landscape Institute (LI) are affiliated with Land, and their members receive a discount on the article processing charge.