Security Ontology: Simulating Threats to Corporate Assets

作者: Andreas Ekelhart , Stefan Fenz , Markus D. Klemen , Edgar R. Weippl

DOI: 10.1007/11961635_17

关键词:

摘要: Threat analysis and mitigation, both essential for corporate security, are time consuming, complex demand expert knowledge. We present an approach simulating threats to assets, taking the entire infrastructure into account. Using this effective countermeasures their costs can be calculated quickly without knowledge a subsequent security decisions will based on objective criteria. The ontology used simulation is Landwehr's [ALRL04] taxonomy of computer dependability.

参考文章(5)
Marc Donner, Toward a Security Ontology ieee symposium on security and privacy. ,vol. 1, pp. 6- 7 ,(2003) , 10.1109/MSP.2003.10004
Carl E. Landwehr, Alan R. Bull, John P. McDermott, William S. Choi, A taxonomy of computer program security flaws ACM Computing Surveys. ,vol. 26, pp. 211- 254 ,(1994) , 10.1145/185403.185412
A. Avizienis, J.-C. Laprie, B. Randell, C. Landwehr, Basic concepts and taxonomy of dependable and secure computing IEEE Transactions on Dependable and Secure Computing. ,vol. 1, pp. 11- 33 ,(2004) , 10.1109/TDSC.2004.2
M. Donner, Hey, robot! ieee symposium on security and privacy. ,vol. 1, pp. 51- 55 ,(2003) , 10.1109/MSECP.2003.1203222
Beispiel (cont‘d), Minh Tuan Nguyen, Mary parentOf Bill, OWL Web Ontology Language ,(2003)