A SECURE ARCHITECTURE FOR MANAGING CONFIDENTIAL DOCUMENTS IN MILITARY ELECTRONIC DATABASES

Authors

  • Giyosjon Jumaev Abdivaxobovich Author
  • Turapov Sherzod Nurmatovich Author

Abstract

This article proposes a layered secure architecture for managing confidential documents stored in the electronic databases of military organizations. Modern military information systems demand a high level of confidentiality, integrity, and availability, yet traditional perimeter-based defenses are no longer sufficient against insider threats and sophisticated cyberattacks. The proposed architecture combines Zero Trust principles, the Bell-LaPadula multi-level security model, role- and attribute-based access control (RBAC/ABAC), and modern cryptographic safeguards (AES-256, TLS 1.3, PKI/HSM) into a single, coherent design. Real statistical data collected from the U.S. Department of Defense's Zero Trust strategy, NIST SP 800-53, and IBM's 2025 Cost of a Data Breach Report were analyzed to ground the design in current threat and cost evidence. The results show that a layered approach substantially strengthens protection not only against external attacks but also against insider threats. The article concludes with practical recommendations for implementing the proposed architecture and outlines directions for future research.

References

1. U.S. Department of Defense, Office of the CIO. DoD Zero Trust Strategy. Version 1.1, April 2024.

2. U.S. Department of Defense, Office of the CIO. Department of Defense Zero Trust Overlays. Version 1.1, June 2024.

3. U.S. General Services Administration. Zero Trust Strategy Buyer's Guide: Department of Defense (DoD) Zero Trust Strategy. Version 1.4, May 2025.

4. IBM Security. Cost of a Data Breach Report 2025. IBM Corporation, 2025.

5. Bell, D. E., LaPadula, L. J. Secure Computer Systems: Mathematical Foundations. MITRE Corporation Technical Report, 1973.

6. National Institute of Standards and Technology (NIST). Security and Privacy Controls for Information Systems and Organizations. NIST Special Publication 800-53, Revision 5.

7. The White House. Executive Order 14028 — Improving the Nation's Cybersecurity. May 2021.

Downloads

Published

2026-09-28