首页> 外文期刊>The environmentalist >Mission assurance policy and risk management in cybersecurity
【24h】

Mission assurance policy and risk management in cybersecurity

机译:网络安全中的任务保证政策和风险管理

获取原文
获取原文并翻译 | 示例
       

摘要

Mission assurance policy and risk management are essential in enabling decision makers to ensure successful completion of missions by addressing the security status of cyber assets. This paper presents a novel mission assurance policy that adapts to the dynamic security status of all mission assets to quickly and automatically determine mission assurance level and to decide what changes are needed accordingly. The novelty of this mission assurance policy stems from using a time Petri net model for determining the security status of cyber assets, and then employing binary or multi-valued logic decision diagrams to assess the mission assurance level. The ability of a mission assurance policy to successfully complete its objectives depends mainly on whether a risk management scheme is provided to reduce risk to an acceptable level. To that end, this paper also describes a risk management scheme to systematically deal with the main factors of risk management such as the temporal interdependencies of cyber assets, impact of attacks, and risk mitigation. Given that the status of cyber assets changes due to the dynamic cybersecurity environment of asset vulnerabilities, threats, and recovery, the proposed mission assurance policy and risk management scheme enable decision makers to cope with the real-time assessment of mission assurance level.
机译:任务保证政策和风险管理对于使决策者能够通过解决网络资产的安全状况来确保成功完成任务至关重要。本文提出了一种新颖的任务保证策略,该策略适用于所有任务资产的动态安全状态,可以快速自动地确定任务保证级别并相应地决定需要进行哪些更改。该任务保证策略的新颖性在于使用时间Petri网模型确定网络资产的安全状态,然后使用二进制或多值逻辑决策图来评估任务保证级别。任务保证政策成功完成其目标的能力主要取决于是否提供了风险管理计划以将风险降低到可接受的水平。为此,本文还描述了一种风险管理方案,以系统地处理风险管理的主要因素,例如网络资产的时间相互依赖性,攻击的影响和风险缓解。鉴于网络资产的状态由于资产漏洞,威胁和恢复的动态网络安全环境而变化,因此建议的任务保证政策和风险管理方案使决策者能够应对任务保证水平的实时评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号