• DocumentCode
    2777214
  • Title

    Estimating Security Coverage for Cloud Services

  • Author

    Dasgupta, Dipankar ; Rahman, Md Moshiur

  • Author_Institution
    Dept. of Comput. Sci., Univ. of Memphis, Memphis, TN, USA
  • fYear
    2011
  • fDate
    9-11 Oct. 2011
  • Firstpage
    1064
  • Lastpage
    1071
  • Abstract
    Secure cloud environment is essential for providing uninterrupted services to customers (individual user, company and government), since customers are relying on cloud for their computing and network service needs. As providers play the central role in cloud security, they need to establish rigorous security measures as a part of their service offerings. In order to limit liabilities for damages caused by the cloud, some form of insurance seems appropriate. For cloud security insurance, however, the question of differential security coverage is relevant as the cost of deploying special protection, detection and response tools varies and requires the coverage estimation. In this paper, we describe a framework to estimate security coverage for different type of service offerings. We have developed software prototype of this framework, called MEGHNAD and tested for various cloud service security requirements. This prototype can serve as a specialized Cloud Doctor in prescribing the right combination of security tools for different cloud services and according to the level of security assurance required.
  • Keywords
    cloud computing; customer services; security of data; software prototyping; MEGHNAD; cloud doctor; cloud security insurance; cloud service; damage liabilities; network service; secure cloud environment; security assurance; security coverage estimation; security tool; software prototype development; uninterrupted customer service; Authentication; Fires; Genetic algorithms; Indexes; Insurance; Silicon; Cloud Insurance; Cloud Services; Security Coverage; Security Tools;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Privacy, Security, Risk and Trust (PASSAT) and 2011 IEEE Third Inernational Conference on Social Computing (SocialCom), 2011 IEEE Third International Conference on
  • Conference_Location
    Boston, MA
  • Print_ISBN
    978-1-4577-1931-8
  • Type

    conf

  • DOI
    10.1109/PASSAT/SocialCom.2011.246
  • Filename
    6113260