首页> 外文会议>ICT systems security and privacy protection >Optimal Security Configuration for Cyber Insurance
【24h】

Optimal Security Configuration for Cyber Insurance

机译:网络保险的最佳安全配置

获取原文
获取原文并翻译 | 示例

摘要

Losses due to cyber security incidents could be very significant for organisations. This fact forces managers to consider cyber security risks at the highest management level. Cyber risks are usually either mitigated by technical means (countermeasures) or transferred to another party (i.e., insurer). Both options require significant investments and organisations face the problem of optimal distribution of cyber security budget between these risk treatment options. In this paper, we propose an approach for optimal distribution of investments between self-protection and cyber insurance. The key difference of our paper with respect to others in the field is that our model helps to identify the required security controls, rather than implicitly assuming a relation between security investments, security configuration and expected probability of attack. Our approach exploits a discrete model of investment in self-protection, which is more challenging for analysis but is more realistic and convenient for the application. Our model further considers several threats and allows threats to occur more than once.
机译:对于组织而言,由于网络安全事件造成的损失可能非常巨大。这一事实迫使管理人员在最高管理级别上考虑网络安全风险。网络风险通常可以通过技术手段(对策)来缓解,也可以转移给另一方(即保险人)。两种选择都需要大量投资,并且组织面临着在这些风险处理选项之间优化网络安全预算的问题。在本文中,我们提出了一种在自我保护和网络保险之间最佳分配投资的方法。本文相对于其他领域的主要区别在于我们的模型有助于确定所需的安全控制,而不是隐式地假设安全投资,安全配置和预期的攻击可能性之间的关系。我们的方法采用了一种用于自我保护的离散投资模型,该模型对分析更具挑战性,但对于应用而言则更为现实和方便。我们的模型进一步考虑了几种威胁,并允许威胁发生不止一次。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号