• DocumentCode
    2264950
  • Title

    On stochastic risk ordering of network services for proactive security management

  • Author

    Amezziane, Mohamed ; Al-Shaer, Ehab ; Ali, Muhammad Qasim

  • Author_Institution
    Dept. of Math. Sci., Depaul Univ., Chicago, IL, USA
  • fYear
    2012
  • fDate
    16-20 April 2012
  • Firstpage
    994
  • Lastpage
    1000
  • Abstract
    Contemporary network services don´t have any statistical ranking mechanism for proactive security management. Since the emerging threats are actively exploiting the vulnerabilities in network services to compromise the system, not much attention has been paid to rank these services based on their vulnerability history. We argue in this paper that a reliable mechanism could be used to rank these services based on their vulnerability history. Such ranking will be significantly helpful for proactive network security management to partition services and deploy security countermeasures. We propose a framework using stochastic order alternatives to statistically rank network services based on time intervals between exploits as reported by National Vulnerability Database (NVD). We show that Statistical techniques can be used to rank these services by modeling the related metrics. We validated our technique using products of known ranking, and presented some case studies to confirm our result on real network services.
  • Keywords
    computer network management; computer network security; statistical analysis; NVD; National Vulnerability Database; network services; proactive network security management; security countermeasures; statistical techniques; stochastic risk ordering; time intervals; vulnerability history; Data models; Random variables; Reliability; Security; Software; Stochastic processes; Testing;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network Operations and Management Symposium (NOMS), 2012 IEEE
  • Conference_Location
    Maui, HI
  • ISSN
    1542-1201
  • Print_ISBN
    978-1-4673-0267-8
  • Electronic_ISBN
    1542-1201
  • Type

    conf

  • DOI
    10.1109/NOMS.2012.6212020
  • Filename
    6212020