• DocumentCode
    1304138
  • Title

    Designing Host and Network Sensors to Mitigate the Insider Threat

  • Author

    Bowen, Brian M. ; Ben Salem, Malek ; Hershkop, Shlomo ; Keromytis, Angelos D. ; Stolfo, Salvatore J.

  • Author_Institution
    Columbia Univ., New York, NY, USA
  • Volume
    7
  • Issue
    6
  • fYear
    2009
  • Firstpage
    22
  • Lastpage
    29
  • Abstract
    Insider attacks-that is, attacks by users with privileged knowledge about a system-are a growing problem for many organizations. To address this threat, the authors have designed an architecture for insider threat detection that combines an array of complementary monitoring and auditing techniques.
  • Keywords
    security of data; system monitoring; auditing technique; host sensors; insider threat detection; monitoring technique; network sensors; decoys; host-based sensors; insider attacks; network sensors;
  • fLanguage
    English
  • Journal_Title
    Security & Privacy, IEEE
  • Publisher
    ieee
  • ISSN
    1540-7993
  • Type

    jour

  • DOI
    10.1109/MSP.2009.109
  • Filename
    5210091