DocumentCode :
2264950
Title :
On stochastic risk ordering of network services for proactive security management
Author :
Amezziane, Mohamed ; Al-Shaer, Ehab ; Ali, Muhammad Qasim
Author_Institution :
Dept. of Math. Sci., Depaul Univ., Chicago, IL, USA
fYear :
2012
fDate :
16-20 April 2012
Firstpage :
994
Lastpage :
1000
Abstract :
Contemporary network services don´t have any statistical ranking mechanism for proactive security management. Since the emerging threats are actively exploiting the vulnerabilities in network services to compromise the system, not much attention has been paid to rank these services based on their vulnerability history. We argue in this paper that a reliable mechanism could be used to rank these services based on their vulnerability history. Such ranking will be significantly helpful for proactive network security management to partition services and deploy security countermeasures. We propose a framework using stochastic order alternatives to statistically rank network services based on time intervals between exploits as reported by National Vulnerability Database (NVD). We show that Statistical techniques can be used to rank these services by modeling the related metrics. We validated our technique using products of known ranking, and presented some case studies to confirm our result on real network services.
Keywords :
computer network management; computer network security; statistical analysis; NVD; National Vulnerability Database; network services; proactive network security management; security countermeasures; statistical techniques; stochastic risk ordering; time intervals; vulnerability history; Data models; Random variables; Reliability; Security; Software; Stochastic processes; Testing;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Network Operations and Management Symposium (NOMS), 2012 IEEE
Conference_Location :
Maui, HI
ISSN :
1542-1201
Print_ISBN :
978-1-4673-0267-8
Electronic_ISBN :
1542-1201
Type :
conf
DOI :
10.1109/NOMS.2012.6212020
Filename :
6212020
Link To Document :
بازگشت