首页> 外文会议>Americas conference on information systems;AMCIS 2010 >Re-examining the Information Systems Security Problem from a Systems Theory Perspective
【24h】

Re-examining the Information Systems Security Problem from a Systems Theory Perspective

机译:从系统理论的角度重新审视信息系统安全问题

获取原文

摘要

This theoretical paper discusses a recent shift in cyber attackers' interest away from traditional network and operating systems vulnerabilities and towards application level security flaws in end user systems. The authors argue that this shift signals a strong need to re-examine the way that security is addressed during the systems development process. Most of the systems development methodologies currently used do not contain formal processes for dealing with the interconnected complexity and risks associated with today's computing environments. Using systems theory as a theoretical lens, the fundamental processes of current systems development methodologies are analyzed and weaknesses in their ability to deal with these environmental factors are discussed. The authors then present a proposed holistic framework for integrating security into existing systems development methods. The paper concludes with a discussion of the need for more scholarly research in this area and suggestions for future research directions are offered.
机译:这篇理论文章讨论了网络攻击者最近的兴趣从传统的网络和操作系统漏洞转移到最终用户系统中的应用程序级安全漏洞的趋势。作者认为,这种转变表明强烈需要重新检查系统开发过程中解决安全性的方式。当前使用的大多数系统开发方法并不包含用于处理与当今计算环境相关的互连复杂性和风险的正式过程。以系统理论为理论视角,分析了当前系统开发方法论的基本过程,并讨论了其应对这些环境因素的能力的弱点。然后,作者提出了一个提议的整体框架,用于将安全性集成到现有的系统开发方法中。本文最后讨论了在该领域需要进行更多学术研究的必要性,并为未来的研究方向提供了建议。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号