First Message | Alibaba Financial Cloud Xu Min: Talking about "Sense of Security"

Abstract: Taking a step back, the sense of security is only an appearance in the end, and the complete construction of security capabilities is the starting point and path of everything.


With the release of " Selected Financial Security Information ", let's talk about one of the most important topics in the financial industry: the sense of security.

 

Going back to Aristotle's first principles, the first quality requirement of a financial institution to the outside world is a sense of security.

 

The tall, luxuriously decorated outlet halls are creating a sense of security; strict and meticulous process design is creating a sense of security; a series of capital management requirements such as Basel 3 are creating a sense of security; ISO, PCI DSS and other standards, even It is the LOGO design of financial institutions, all of which aim to create a safe and reliable image.

 

However, from Hu Xueyan Bank, to many financial events in modern times, and even the formation of previous stock market crashes, an important factor is the lack of a sense of security, and it may even be just because of an "ant's nest".

 

Taking a step back, the sense of security is only an appearance in the end, and the complete construction of security capabilities is the starting point and path of everything.

 

Just like many people think that Alibaba is "operation is king", but what really determines the ability of "operation is king" is the overall ability behind Alibaba: strategic design, corporate culture, organizational structure, product design, performance design, technology platform, etc. Wait, the ability to operate is only the final appearance.

 

A year or two ago, the popular book "Bank 3.0" argued that banking is no longer where you go, but something you do.

 

Likewise, financial security capabilities and demand models are changing dramatically. Just like the design differences between Chinese and American university campuses, the definition of security is no longer the construction of a visible "wall", but after the wall is removed and integrated into the Internet environment, it still ensures sufficient security capabilities and can still be built externally. sense of security".

 

Times have changed, and our vision, concepts and methodology also need to evolve.

 

Security incidents in recent years have made us relive history.

 

2016年Linux Struts2漏洞大面积爆发时,我们知道了“特洛伊木马”是会“屠城”的;WannaCry勒索病毒爆发时,我们重温了法国重金构建的“马其顿防线”被德国从背后攻破时的无奈;某互联网公司因为个别员工的不满,在离职前删掉了整个客户数据库,我们重温了吴三桂“冲冠一怒即灭国”;甚至连在做业务促销时遇到的前来薅羊毛的黄牛党,也让我们看到秦国东市上发生的某一幕场景,(虽然当年的出发点是“稳定市场”)。当IoT,人工智能,区块链技术越来越多地被应用到金融行业的方方面面,机会和风险窗口,同时向我们敞开。

 

安全对于金融来说,已经不是一道防线,一纸流程,或是一个口号。在威胁步步紧逼的今天,金融行业的安全,更需要协作分享,相互借鉴。而作为金融行业的安全决策者们,也更需要全球的视野,和前沿的思考。

 

居危,思安。我们先要洞察现状,知晓危机。这也是“金融安全资讯精选”,想给行业安全决策者带来的价值。

 

 

我们想把全球安全界正在发生的事情,非常鲜活地展现在你面前;也会告诉你金融“同行”们怎么做安全,把好的能力模型拿来和金融行业共享。

 

以其为鉴也好,取他山之石也好,我们期望你炼就不破金身,期待你把握危机的脉络,从中摸索你需要去构筑的“安全感”。

 

 

 

— 阿里金融云总经理 徐敏

 

本文为云栖社区原创内容,未经允许不得转载,如需转载请发送邮件至[email protected]

Guess you like

Origin http://43.154.161.224:23101/article/api/json?id=326539604&siteId=291194637
Recommended