...
首页> 外文期刊>Computers & Security >Cyber risk assessment in cloud provider environments: Current models and future needs
【24h】

Cyber risk assessment in cloud provider environments: Current models and future needs

机译:云提供商环境中的网络风险评估:当前模型和未来需求

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Traditional frameworks for risk assessment do not work well for cloud computing. While recent work has often focussed on the risks faced by firms adopting or selecting cloud services, there has been little research on how cloud providers might assess their own services. In this paper, we use an in-depth review of the extant literature to highlight the weaknesses of traditional risk assessment frameworks for this task. Using examples, we then describe a new risk assessment model (CSCCRA) and compare this against three established approaches. For each approach, we consider its goals, the risk assessment process, decisions, the scope of the assessment and the way in which risk is conceptualised. This evaluation points to the need for dynamic models specifically designed to evaluate cloud risk. Our suggestions for future research are aimed at improving the identification, assessment, and mitigation of inter-dependent cloud risks inherent in a defined supply chain. (C) 2019 Elsevier Ltd. All rights reserved.
机译:传统的风险评估框架不适用于云计算。尽管最近的工作通常集中在采用或选择云服务的公司所面临的风险上,但很少有关于云提供商如何评估其自身服务的研究。在本文中,我们对现有文献进行了深入回顾,以突出显示传统的风险评估框架在此任务上的弱点。然后,使用示例描述一个新的风险评估模型(CSCCRA),并将其与三种已建立的方法进行比较。对于每种方法,我们都会考虑其目标,风险评估过程,决策,评估范围以及将风险概念化的方式。该评估指出需要专门设计用于评估云风险的动态模型。我们对未来研究的建议旨在改善对已定义供应链中固有的相互依存的云风险的识别,评估和缓解。 (C)2019 Elsevier Ltd.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号