Multi-level Information Security Model for Data Center Protection

Main Article Content

Khalicha Yubuzova
Ruslan Yerezhepov

Abstract

This article presents a comprehensive multi-level information security model designed for data processing centers (DPCs). The proposed model integrates physical, network, application, and data protection layers into a cohesive defense-in-depth framework. Each security level is formally defined, and interdependencies between layers are analyzed. The model addresses current threats including advanced persistent threats (APTs), insider attacks, and supply-chain vulnerabilities. Experimental validation demonstrates a 37% reduction in successful intrusion attempts compared to conventional single-layer approaches. The findings contribute to both theoretical cybersecurity frameworks and practical deployment guidelines for enterprise data centers.

Downloads

Download data is not yet available.

Article Details

Section

Information and Web technologies

How to Cite

Yubuzova, K., & Yerezhepov, R. (2026). Multi-level Information Security Model for Data Center Protection. InterConf. Scientific Collection, 292, 261-265. https://interconf.space/index.php/regular/article/view/33

References

Verizon. (2024). Data Breach Investigations Report. Verizon Communications Inc. https://www.verizon.com/business/resources/reports/dbir/

Ross, R., Johnson, L. A., & Dempsey, K. (2014). Guide for Applying the Risk Management Framework to Federal Information Systems. NIST Special Publication 800-37. https://doi.org/10.6028/NIST.SP.800-37r2

Bell, D. E., & LaPadula, L. J. (1973). Secure Computer Systems: Mathematical Foundations. MITRE Corporation Technical Report MTR-2547.

Biba, K. J. (1977). Integrity Considerations for Secure Computer Systems. MITRE Corporation Technical Report MTR-3153.

National Institute of Standards and Technology. (2018). Framework for Improving Critical Infrastructure Cybersecurity (Version 1.1). NIST. https://doi.org/10.6028/NIST.CSWP.04162018

International Organization for Standardization. (2022). ISO/IEC 27001:2022 Information Security, Cybersecurity and Privacy Protection — Information Security Management Systems — Requirements. ISO.

Rose, S., Borchert, O., Mitchell, S., & Connelly, S. (2020). Zero Trust Architecture. NIST Special Publication 800-207. https://doi.org/10.6028/NIST.SP.800-207

Kindervag, J. (2021). No More Chewy Centers: Introducing the Zero Trust Model of Information Security. Forrester Research.

Scarfone, K., Souppaya, M., & Sexton, M. (2007). Guide to Storage Encryption Technologies for End User Devices. NIST Special Publication 800-111. https://doi.org/10.6028/NIST.SP.800-111

Stallings, W. (2022). Network Security Essentials: Applications and Standards (7th ed.). Pearson Education.

Smith, J. A., & Johnson, M. V. (2024). Empirical Evaluation of Defense-in-Depth Architectures in Virtualized Data Center Environments. Journal of Information Security and Applications, 74, 103482. https://doi.org/10.1016/j.jisa.2024.103482