{"id":2333,"date":"2025-12-11T06:01:07","date_gmt":"2025-12-11T05:01:07","guid":{"rendered":"https:\/\/www.syredis.fr\/?page_id=2333"},"modified":"2026-05-13T23:04:49","modified_gmt":"2026-05-13T21:04:49","slug":"2333-2","status":"publish","type":"page","link":"https:\/\/www.syredis.fr\/?page_id=2333","title":{"rendered":"Security_System_Fra"},"content":{"rendered":"<p><div class=\"et_d4_element et_pb_section et_pb_section_0 et_animated et_pb_with_background  et_pb_css_mix_blend_mode et_section_regular et_block_section\" >\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<span class=\"et_pb_background_pattern\"><\/span>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><div class=\"et_d4_element et_pb_section et_pb_section_1  et_pb_css_mix_blend_mode et_section_regular et_block_section\" >\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_d4_element et_pb_row et_pb_row_0  et_pb_css_mix_blend_mode et_block_row\">\n\t\t\t\t<div class=\"et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_0  et_pb_css_mix_blend_mode et-last-child et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_text et_pb_text_0  et_pb_text_align_left et_pb_bg_layout_light\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_text_inner\"><p>Principaux risques pour les collectivit\u00e9s<\/p><\/div>\n\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><div class=\"et_d4_element et_pb_row et_pb_row_1  et_pb_css_mix_blend_mode et_block_row\">\n\t\t\t\t<div class=\"et_d4_element et_pb_column_1_3 et_pb_column et_pb_column_1  et_pb_css_mix_blend_mode et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_blurb et_pb_blurb_0  et_pb_text_align_left  et_pb_blurb_position_top et_block_module et_pb_bg_layout_dark\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_blurb_content\">\n\t\t\t\t\t\n\t\t\t\t\t<div class=\"et_pb_blurb_container\">\n\t\t\t\t\t\t<h4 class=\"et_pb_module_header\"><span>Objectifs<\/span><\/h4>\n\t\t\t\t\t\t<div class=\"et_pb_blurb_description\"><ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li><strong>Ransomware :<\/strong> chiffrage des donn\u00e9es, interruption de services (\u00e9tat civil, cantine, r\u00e9gie).<\/li>\n<li><strong>Hame\u00e7onnage (phishing) :<\/strong> vol d'identifiants, fraude au virement.<\/li>\n<li><strong>Exposition d'outils publics :<\/strong> RDP\/VPN mal configur\u00e9s, CMS non patch\u00e9s.<\/li>\n<li><strong>Fuite de donn\u00e9es :<\/strong> erreurs de partage, perte d'\u00e9quipement, services cloud non ma\u00eetris\u00e9s.<\/li>\n<li><strong>OT \/ Urbain connect\u00e9 :<\/strong> cam\u00e9ras, contr\u00f4le d'acc\u00e8s, signalisation, b\u00e2timents intelligents.<\/li>\n<\/ul>\n<\/li>\n<\/ul><\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<\/div><div class=\"et_d4_element et_pb_column_1_3 et_pb_column et_pb_column_2  et_pb_css_mix_blend_mode et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_blurb et_pb_blurb_1  et_pb_text_align_left  et_pb_blurb_position_top et_block_module et_pb_bg_layout_dark\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_blurb_content\">\n\t\t\t\t\t\n\t\t\t\t\t<div class=\"et_pb_blurb_container\">\n\t\t\t\t\t\t<h4 class=\"et_pb_module_header\"><span>Synth\u00e8se<\/span><\/h4>\n\t\t\t\t\t\t<div class=\"et_pb_blurb_description\"><ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li>Authentification multifacteur (MFA) pour messagerie, VPN, outils m\u00e9tiers.<\/li>\n<li>Sauvegardes 3\u20112\u20111, test\u00e9es et hors ligne.<br \/>Mises \u00e0 jour et correctifs sous 14\/30 jours selon criticit\u00e9.<\/li>\n<li>Segmentation r\u00e9seau (utilisateurs \/ serveurs \/ OT \/ Wi\u2011Fi invit\u00e9s).<\/li>\n<li>Filtrage de messagerie + formation anti\u2011phishing.<\/li>\n<li>Journalisation centralis\u00e9e + supervision (SIEM\/EDR\/antivirus).<\/li>\n<\/ul>\n<\/li>\n<\/ul><\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<\/div><div class=\"et_d4_element et_pb_column_1_3 et_pb_column et_pb_column_3  et_pb_css_mix_blend_mode et-last-child et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_blurb et_pb_blurb_2  et_pb_text_align_left  et_pb_blurb_position_top et_block_module et_pb_bg_layout_dark\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_blurb_content\">\n\t\t\t\t\t\n\t\t\t\t\t<div class=\"et_pb_blurb_container\">\n\t\t\t\t\t\t<h4 class=\"et_pb_module_header\"><span>Objectifs<\/span><\/h4>\n\t\t\t\t\t\t<div class=\"et_pb_blurb_description\"><ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li>Prot\u00e9ger la confidentialit\u00e9 des donn\u00e9es administratives.<\/li>\n<li>Confidentialit\u00e9 des donn\u00e9es administr\u00e9es et des administr\u00e9s<\/li>\n<li>Assurer la confidentialit\u00e9 des informations<\/li>\n<li>Renforcer la tra\u00e7abilit\u00e9 des actions et des acc\u00e8s.<\/li>\n<li>Pr\u00e9venir les alt\u00e9rations ou manipulations non autoris\u00e9es des donn\u00e9es.<\/li>\n<li>Tra\u00e7abilit\u00e9 et conformit\u00e9 (RGPD, journaux).<\/li>\n<\/ul>\n<\/li>\n<\/ul><\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><div class=\"et_d4_element et_pb_section et_pb_section_2  et_pb_css_mix_blend_mode et_section_regular et_block_section\" >\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_d4_element et_pb_row et_pb_row_2  et_pb_css_mix_blend_mode et_block_row\">\n\t\t\t\t<div class=\"et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_4  et_pb_css_mix_blend_mode et-last-child et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_text et_pb_text_1  et_pb_text_align_left et_pb_bg_layout_dark\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_text_inner\"><h3>12 actions cl\u00e9s (prioris\u00e9es)<\/h3>\n<ol>\n<li style=\"list-style-type: none;\">\n<ol>\n<li>MFA g\u00e9n\u00e9ralis\u00e9, incluant messagerie, VPN, acc\u00e8s administrateurs et outils m\u00e9tiers<\/li>\n<li>Sauvegardes en strat\u00e9gie 3-2-1, avec trois copies, deux supports et une version hors-ligne ou immuable, accompagn\u00e9es d\u2019un test de restauration trimestriel<\/li>\n<li>Gestion structur\u00e9e des correctifs, bas\u00e9e sur un inventaire \u00e0 jour, une priorisation selon le score CVSS et un d\u00e9ploiement progressif (pilote puis g\u00e9n\u00e9ralisation).<\/li>\n<li>Durcissement des postes et serveurs, incluant la d\u00e9sactivation des macros, l\u2019activation du pare-feu local et le contr\u00f4le des applications.<\/li>\n<li>Segmentation r\u00e9seau, avec des VLAN par usage, un filtrage entre zones et un Wi-Fi invit\u00e9s isol\u00e9<\/li>\n<li>EDR\/antivirus supervis\u00e9, avec d\u00e9tection, analyse et mise en quarantaine<\/li>\n<li>Filtrage mail et web, int\u00e9grant sandbox pour les pi\u00e8ces jointes, DMARC\/DKIM\/SPF et blocage des domaines r\u00e9cents ou suspects.<\/li>\n<li>Gestion des identit\u00e9s avec moindre privil\u00e8ge, comptes nominatifs et r\u00e9vocation automatique des acc\u00e8s.<\/li>\n<li>Journalisation centralis\u00e9e, via syslog ou SIEM, avec horodatage NTP et une r\u00e9tention d\u2019au moins six mois.<\/li>\n<li>Continuit\u00e9 d\u2019activit\u00e9, reposant sur un PCA\/PRA, une priorisation des services critiques (\u00e9tat civil, paie, cantine\u2026) et des tests r\u00e9guliers.<\/li>\n<li>Sensibilisation continue, combinant micro-modules et simulations de phishing.<\/li>\n<li>Gestion des fournisseurs, incluant contr\u00f4le, suivi et obligations de s\u00e9curit\u00e9.<\/li>\n<\/ol>\n<\/li>\n<\/ol><\/div>\n\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><div class=\"et_d4_element et_pb_section et_pb_section_3  et_pb_css_mix_blend_mode et_section_regular et_block_section\" >\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_d4_element et_pb_row et_pb_row_3  et_pb_css_mix_blend_mode et_block_row\">\n\t\t\t\t<div class=\"et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_5  et_pb_css_mix_blend_mode et-last-child et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_text et_pb_text_2  et_pb_text_align_left et_pb_bg_layout_light\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_text_inner\"><p>Mod\u00e8les &amp; politiques<\/p><\/div>\n\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><div class=\"et_d4_element et_pb_row et_pb_row_4  et_pb_css_mix_blend_mode et_block_row\">\n\t\t\t\t<div class=\"et_d4_element et_pb_column_1_2 et_pb_column et_pb_column_6  et_pb_css_mix_blend_mode et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_blurb et_pb_blurb_3  et_pb_text_align_left  et_pb_blurb_position_top et_block_module et_pb_bg_layout_dark\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_blurb_content\">\n\t\t\t\t\t\n\t\t\t\t\t<div class=\"et_pb_blurb_container\">\n\t\t\t\t\t\t<h4 class=\"et_pb_module_header\"><span>Politique de s\u00e9curit\u00e9 (PSSI)<\/span><\/h4>\n\t\t\t\t\t\t<div class=\"et_pb_blurb_description\"><p>La PSSI \u00e9tablit un cadre clair englobant la gouvernance (\u00e9lu r\u00e9f\u00e9rent, DSI, RSSI), la classification des donn\u00e9es, les r\u00e8gles d\u2019acc\u00e8s, les pratiques de sauvegarde, la gestion des incidents et les exigences de s\u00e9curit\u00e9 appliqu\u00e9es aux prestataires.<\/p><\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<\/div><div class=\"et_d4_element et_pb_column_1_2 et_pb_column et_pb_column_7  et_pb_css_mix_blend_mode et-last-child et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_blurb et_pb_blurb_4  et_pb_text_align_left  et_pb_blurb_position_top et_block_module et_pb_bg_layout_dark\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_blurb_content\">\n\t\t\t\t\t\n\t\t\t\t\t<div class=\"et_pb_blurb_container\">\n\t\t\t\t\t\t<h4 class=\"et_pb_module_header\"><span>Chartes et proc\u00e9dures<\/span><\/h4>\n\t\t\t\t\t\t<div class=\"et_pb_blurb_description\"><ul>\n<li style=\"list-style-type: none;\">\n<ul>\n<li>Charte utilisateur \/ administrateur<\/li>\n<li>Proc\u00e9dure d'habilitation et revue p\u00e9riodique<\/li>\n<li>Politique mots de passe \/ MFA<\/li>\n<li>Proc\u00e9dure sauvegarde &amp; restauration<\/li>\n<li>Plan de r\u00e9ponse \u00e0 incident (PRI)<\/li>\n<\/ul>\n<\/li>\n<\/ul><\/div>\n\t\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><div class=\"et_d4_element et_pb_section et_pb_section_4  et_pb_css_mix_blend_mode et_section_regular et_block_section\" >\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_d4_element et_pb_row et_pb_row_5  et_pb_css_mix_blend_mode et_block_row\">\n\t\t\t\t<div class=\"et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_8  et_pb_css_mix_blend_mode et-last-child et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_text et_pb_text_3  et_pb_text_align_left et_pb_bg_layout_light\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_text_inner\"><p>R\u00e9ponse \u00e0 un incident<\/p><\/div>\n\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><div class=\"et_d4_element et_pb_row et_pb_row_6  et_pb_css_mix_blend_mode et_block_row\">\n\t\t\t\t<div class=\"et_d4_element et_pb_column_4_4 et_pb_column et_pb_column_9  et_pb_css_mix_blend_mode et-last-child et_block_column\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_module et_d4_element et_pb_text et_pb_text_4  et_pb_text_align_left et_pb_bg_layout_light\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_text_inner\"><ol>\n<li>\u00a0<strong>D\u00e9tecter :<\/strong> alertes EDR\/antivirus, SIEM, signalements utilisateurs.<\/li>\n<li>\u00a0<strong>Qualifier :<\/strong> type (malware, fuite, fraude), p\u00e9rim\u00e8tre, criticit\u00e9 (impacts services\/administr\u00e9s).<\/li>\n<li>\u00a0<strong>Contenir :<\/strong> isoler postes\/serveurs, couper comptes compromis, blocage IOC.<\/li>\n<li>\u00a0<strong>\u00c9radiquer :<\/strong> supprimer la cause (malware, comptes), corriger vuln\u00e9rabilit\u00e9s.<\/li>\n<li>\u00a0<strong>R\u00e9tablir :<\/strong> restaurer depuis sauvegardes saines; tests; remise en service par phases.<\/li>\n<li>\u00a0<strong>Communiquer :<\/strong> cellule de crise (\u00e9lu, DGS, DSI, comm), information des usagers si n\u00e9cessaire.<\/li>\n<li>\u00a0<strong>D\u00e9clarer :<\/strong> notification \u00e0 l'autorit\u00e9 comp\u00e9tente (ex. CNIL pour donn\u00e9es personnelles) selon les obligations applicables.<\/li>\n<li>\u00a0<strong>Retour d'exp\u00e9rience :<\/strong> le\u00e7ons apprises, plan d'actions.<\/li>\n<\/ol><\/div>\n\t\t\t<\/div><div class=\"et_pb_module et_d4_element et_pb_text et_pb_text_5  et_pb_text_align_left et_pb_bg_layout_light\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_text_inner\"><p>Conformit\u00e9 (cadre g\u00e9n\u00e9ral)<\/p><\/div>\n\t\t\t<\/div><div class=\"et_pb_module et_d4_element et_pb_text et_pb_text_6  et_pb_text_align_left et_pb_bg_layout_light\">\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t<div class=\"et_pb_text_inner\"><ol>\n<li><strong>Protection des donn\u00e9es :<\/strong> registre des traitements, minimisation, base l\u00e9gale, DPIA si n\u00e9cessaire, information des administr\u00e9s.<\/li>\n<li><strong>Gestion des journaux :<\/strong> proportionnalit\u00e9, finalit\u00e9s, dur\u00e9es de conservation adapt\u00e9es.<\/li>\n<li><strong>Achat public :<\/strong> exigences s\u00e9curit\u00e9 dans les march\u00e9s (SLA, notification incident, chiffrement, r\u00e9versibilit\u00e9).<\/li>\n<li><strong>Acc\u00e8s administrateur :<\/strong> tra\u00e7abilit\u00e9, comptes nominaux, contr\u00f4le d'acc\u00e8s fort.<\/li>\n<li><strong>Archivage :<\/strong> int\u00e9grit\u00e9, p\u00e9rennit\u00e9, cycle de vie documentaire.<\/li>\n<\/ol><\/div>\n\t\t\t<\/div>\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div>\n\t\t\t\t\n\t\t\t\t\n\t\t\t<\/div><\/p>\n","protected":false},"excerpt":{"rendered":"","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"class_list":["post-2333","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/www.syredis.fr\/index.php?rest_route=\/wp\/v2\/pages\/2333","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.syredis.fr\/index.php?rest_route=\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.syredis.fr\/index.php?rest_route=\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.syredis.fr\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.syredis.fr\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2333"}],"version-history":[{"count":5,"href":"https:\/\/www.syredis.fr\/index.php?rest_route=\/wp\/v2\/pages\/2333\/revisions"}],"predecessor-version":[{"id":2992,"href":"https:\/\/www.syredis.fr\/index.php?rest_route=\/wp\/v2\/pages\/2333\/revisions\/2992"}],"wp:attachment":[{"href":"https:\/\/www.syredis.fr\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2333"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}