• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Architecting a security strategy measurement and management system
 
  • Details
  • Full
Options
2012
Conference Paper
Title

Architecting a security strategy measurement and management system

Abstract
The use of formal models to guide security design is appealing. This paper presents a model driven approach whereby security systems in operation can be assessed and measured against various requirements that are defined when the system is created. By aligning with organisational policy, and business requirements of a specific system, design and operation can proceed in a way that allows measurement of how successfully security objectives are being achieved. This paper describes a model driven approach which overcomes the contextual restrictions of existing solutions. In particular, where models have been used previously these have tended to be predefined and closed models, whereas the approach described here is an extensible model that comprises all parts of the security monitoring and decision support process. By means of interlinked semantic concepts, the proposed security strategy meta model provides a way to model security directives at an abstract level, which can be automatically compiled into specific rules for an underlying framework of monitoring, decision support, and enforcement engines.
Author(s)
Rieke, R.
Schütte, J.
Hutchison, A.
Mainwork
MDsec '12. Proceedings of the Workshop on Model-Driven Security  
Conference
Model-Driven Security Workshop (MDsec) 2012  
DOI
10.1145/2422498.2422500
Language
English
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
Keyword(s)
  • decision support

  • governance and compliance

  • information security measurement model

  • security information and event management

  • security monitoring

  • security strategy

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024