CSARCH Logs
Because there is no standardised notation for architecture plans in IT as there is in construction, and software-development notations are usually too detailed; a CSA representation must let people analyse, evaluate and decide, by showing only the security-relevant aspects of a s...
Q What is the basic idea of security-by-isolation, and why is complete isolation only a theory?
"My system cannot be reached, so it is secure": security by isolating the system from interaction. Complete isolation is theoretical because every cyber system has a task and needs a minimum of interaction.
It is the oldest security concept. The first computers had no cyber secur...
Q Why is a largely isolated operation justified for the pharma company's top-secret research area, and...
Because the research results make the company market leader, the extra effort and lost convenience of isolation are acceptable; but to reduce espionage, theft and loss through ransomware, further security measures are still needed inside the isolated system.
The setup: pharma com...
Q What is a model, what makes a good one, and why does it matter that many security standards are mode...
A model is an incomplete representation of reality that makes certain aspects, mechanisms or relationships clear; a good model reduces complexity, explains, structures and orders. Many standards are models too, so they also show reality only incompletely.
The incompleteness is de...
Q How does cyber security architecture define a system and a system boundary, and what extra requireme...
A system is a delimitable, coherent structure of several components whose parts relate to each other; the system boundary is drawn as a dashed line around the components under consideration. CSA adds the requirement that a system serves a specific purpose and is clearly delimitab...
Q What is the difference between physical and virtual isolation, and which is weaker?
Physical isolation separates the system spatially, from all networks, removable media and exchange interfaces; virtual isolation uses anything that can prevent communication, such as VLANs, deny-all firewall rules or isolated subnets. Virtual isolation is weaker because it is mor...
Q What is the basic idea of security-by-obscurity, and what did its failure lead to?
"Nobody knows about my system, so it is secure": the system boundary is the "boundary of those in the know". Once networks spread, bad interaction appeared and hiding proved insufficient, which led to network perimeter security, access control through authentication and authorisa...
Q Which three general models and standards matter for applied cyber security architecture, and how do...
The ISO/OSI reference model (a model that became a norm, 1983), ISO 27001 (a norm from the ISO 27000 family, 2005, revised 2013 and 2022) and the OWASP Top 10 (a quasi-standard, updated irregularly).
Status
Since
Covers
ISO/OSI reference model
Model as a norm (ISO standar...
Q What are an actor, an interaction and a component in the CSA notation?
An actor triggers an action, and can be a person or any cyber device; an interaction is an action triggered by an actor on a component, drawn as an arrow from actor to component; a component is a part belonging to a system, which can itself be any cyber device or subsystem.
Acto...
Q Why is the assumption behind security-by-isolation unrealistic for most systems today?
Because a system needs interaction to do its job, modern software is not designed for isolated operation, isolated systems are hard to operate (monitoring, updates, patches, backup…), and the business demands remote access and ever more digital interaction.
The concept assumes th...