首页> 外文会议>International Conference on Advanced Information Networking and Applications >Fortification of IT security by automatic security advisory processing
【24h】

Fortification of IT security by automatic security advisory processing

机译:自动安全咨询处理设防IT安全性

获取原文

摘要

The past years have seen the rapid increase of security related incidents in the field of information technology. IT infrastructures in the commercial as well as in the governmental sector are becoming evermore heterogeneous which increases the complexity of handling and maintaining an adequate security level. Especially organizations which are hosting and processing highly sensitive data are obligated to establish a holistic companywide security approach. We propose a novel security concept to reduce this complexity by automatic assessment of security advisories. A central entity collects vulnerability information from various sources, converts it into a standardized and machine-readable format and distributes it to its subscribers. The subscribers are then able to automatically map the vulnerability information to the ontological stored infrastructure data to visualize newly-discovered software vulnerabilities. The automatic analysis of vulnerabilities decreases response times and permits precise response to new threats and vulnerabilities, thus decreasing the administration complexity and increasing the IT security level.
机译:过去几年已经看到信息技术领域安全相关事件的快速增长。商业公司的IT基础设施以及政府部门正在成为Evermore异构,这增加了处理和维持足够的安全级别的复杂性。特别是托管和处理高度敏感数据的组织有义务建立一个整体的公司全面的安全方法。我们提出了一种新的安全概念,通过自动评估安全咨询来降低这种复杂性。中央实体从各种源收集漏洞信息,将其转换为标准化和机器可读格式并将其分发到其用户。然后,订阅者能够自动将漏洞信息映射到本体存储的基础架构数据,以可视化新发现的软件漏洞。漏洞的自动分析减少了响应时间,并允许对新的威胁和漏洞进行精确的响应,从而降低给管理复杂性并增加IT安全级别。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号