500 rub
Journal Highly available systems №3 for 2026 г.
Article in number:
Estimating of information security system costs in the protection model of the IID system
DOI: 10.18127/j20729472-202603-01
UDC: 681.3
Authors:

V.I. Budzko1, V.G. Belenkov2

1, 2 Federal Research Center «Computer Science» of the Russian Academy Sciences (Moscow, Russia)
1 vbudzko@frccsc.ru, 2 vbelenkov@frccsc.ru

Abstract:

The current stage of development of Russian society is characterized by the digital transformation of all its spheres, including the economy, science, healthcare, education, culture, etc., in which systems that make intensive use of data (AI-driven systems) are increasingly being used. At the same time, the number and intensity of cyberattacks are increasing; they exploit vulnerabilities in systems and compromise information security, which can have negative consequences for individuals, groups of people, organizations, economic sectors, and society as a whole, and can lead to significant financial and material losses. To counter such attacks, it is necessary to develop data and system protection models (Models) that take into account both the extent of damage caused by actual attacks and false positives of the information protection system (IPS), as well as the cost of information protection (IP) – economically justified Models that provide a justification for the costs of IP. The article examines an approach to assessing the costs of ZI, focused on its use in such a model for AIID systems.

Pages: 5-18
For citation

Budzko V.I., Belenkov V.G. Estimating of information security system costs in the protection model of the IID system // Highly Available Systems. 2026. V. 22. № 3. P. 5−18. DOI: https://doi.org/10.18127/j20729472-202603-01

References
  1. Budzko V.I., Korolev V.I., Belenkov V.G., Kejer P.A. Kiberbezopasnost` sistem, realizuyushhix intensivnoe ispol`zovanie danny`x. Mesto kiberbezopasnosti v zashhite informacii. Sistemy` vy`sokoj dostupnosti. 2024. T. 20. № 1. S. 16–29. DOI: https://doi.org/10.18127/j20729472-202401-02 (in Russian).
  2. Budzko V.I., Medennikov V.I., Korolev V.I., Belenkov V.G., Kejer P.A. Osobennosti sistem s intensivny`m ispol`zovaniem danny`x kak ob``ektov obespecheniya bezopasnosti informacii na primere ASU agrotexnologicheskimi processami. Sistemy` vy`sokoj dostupnosti. 2024. T. 20. № 2. S. 28–39. DOI: https://doi.org/10.18127/j20729472-202402-02 (in Russian).
  3. Budzko V.I., Korolev V.I., Belenkov V.G., Kejer P.A. Kiberbezopasnost` sistem, realizuyushhix intensivnoe ispol`zovanie danny`x. Bezopasnost` Raspredelennoj Sredy` sistemy`, realizuyushhej intensivnoe ispol`zovanie danny`x. Sistemy` vy`sokoj dostupnosti. 2024. T. 20. № 4. S. 15–23. DOI: https://doi.org/10.18127/j20729472-202404-02 (in Russian).
  4. Budzko V.I., Korolev V.I., Belenkov V.G., Kejer P.A. Kiberbezopasnost` sistem, realizuyushhix intensivnoe ispol`zovanie danny`x. Bezopasnost` informacionnoj infrastruktury` oblasti s intensivny`m ispol`zovaniem danny`x. Sistemy` vy`sokoj dostupnosti. 2024. T. 20. № 3. S. 5–18. DOI: https://doi.org/10.18127/j20729472-202403-01 (in Russian).
  5. Budzko V.I., Belenkov V.G. Kiberbezopasnost` sistem, realizuyushhix intensivnoe ispol`zovanie danny`x, ispol`zuyushhix texnologii iskusst­ven­nogo intellekta. Sistemy` vy`sokoj dostupnosti. 2025. T. 21. № 1. S. 52–62. DOI: https://doi.org/10.18127/j20729472-202501-05 (in Russian).
  6. Budzko V.I., Korolev V.I., Belenkov V.G., Kejer P.A. Kiberbezopasnost` sistem, realizuyushhix in-tensivnoe ispol`zovanie danny`x. Podxod k primeneniyu metodov iskusstvennogo intellekta dlya avtomatizacii processov obnaruzheniya uyazvimostej, vy`yavleniya, predotvrashheniya, reagirovaniya i vosstanovleniya posle atak. Sistemy` vy`sokoj dostupnosti. 2025. T. 21. № 2. S. 5–11. DOI: https://doi.org/10.18127/j20729472-202502-0 (in Russian).
  7. Budzko V.I., Korolev V.I., Belenkov V.G., Kejer P.A. Kiberbezopasnost` sistem, realizuyushhix intensivnoe ispol`zovanie danny`x. Novy`e metody` i sistemny`e resheniya postroeniya bezopasnoj sredy` obrabotki i analiza danny`x na primere sredy`, uchity`vayushhej osobennosti obrabotki informacii v otrasli zdravooxranenie. Sistemy` vy`sokoj dostupnosti. 2025. T. 21. № 3. S. 5–20. DOI: https://doi.org/ 10.18127/j20729472-202503-02 (in Russian).
  8. Budzko V.I., Belenkov V.G. Kiberbezopasnost` sistem, realizuyushhix intensivnoe ispol`zovanie danny`x. Disciplina formirovaniya tochek sinxronizacii celostnosti na ob``ekte sistemy`, realizuyushhej intensivnoe ispol`zovanie danny`x. Sistemy` vy`sokoj dostupnosti. 2025. T. 21. № 4. S. 5–17. DOI: https://doi.org/10.18127/j20729472-202504-01 (in Russian).
  9. Budzko V.I., Belenkov V.G. Kiberbezopasnost` sistem, realizuyushhix intensivnoe ispol`zovanie danny`x. Obespechenie doveriya k IID-sistemam, ispol`zuyushhim texnologii iskusstvennogo intellekta i mashinnogo obucheniya. Sistemy` vy`sokoj dostupnosti. 2026. T. 22. № 2. S. 5–17. DOI: https://doi.org/10.18127/j20729472-202602-01 (in Russian).
  10. Budzko V.I., Belenkov V.G. Ocenka stoimosti posledstvij uspeshny`x atak i obrabotki lozhny`x srabaty`vanij v modeli zashhity` danny`x i system. Informacionny`e texnologii i vy`chislitel`ny`e sistemy`. 2026. № 3. С. 3–15. DOI: https://doi.org/10.14357/20718632260301 (in Russian).
  11. Belenkov V.G. Voprosy` metodicheskogo obespecheniya postroeniya perspektivnogo KSA (VI). Sistemy` vy`sokoj dostupnosti. 2009. T. 5. № 4. S. 38–72. (in Russian).
  12. Informacionnaya bezopasnost`: e`konomicheskie aspekty`. https://www.jetinfo.ru/informaczionnaya-bezopasnost-ekonomicheskie-aspekty/
  13. Sovokupnaya stoimost` vladeniya (TCO) IT-sistem: polny`j raschet i struktura zatrat. https://beseller.by/blog/total-cost-of-ownership/
  14. Aleksej Ivanov. Raschyot sovokupnoj stoimosti vladeniya (SSV). https://edgesection.ru/sphere/625/
  15. Nistratov A.A. Programmny`e, texnologicheskie i metodicheskie resheniya dlya uprezhdayushhego upravleniya riskami v prilozheniyax sistemnoj inzhenerii: d-r. texn. nauk. M., 2026. 350. (in Russian).
  16. Radziwill N., Benton M. Cybersecurity Cost of Quality: Managing the Costs of Cybersecurity Risk Management/ September 2017/ DOI: 10.48550/arXiv.1707.02653
Date of receipt: 03.08.2026
Approved after review: 13.08.2026
Accepted for publication: 31.08.2026