DocumentCode
2550307
Title
Quantitative Evaluation of Security Metrics
Author
Sanders, William H.
Author_Institution
Dept. of Electr. & Comput. Eng., Univ. of Illinois at Urbana-Champaign, Urbana, IL, USA
fYear
2010
fDate
15-18 Sept. 2010
Firstpage
306
Lastpage
306
Abstract
Summary form only given. Making sound security decisions when designing, operating, and maintaining a complex system is a challenging task. Analysts need to be able to understand and predict how different factors affect overall system security. During system design, security analysts want to compare the security of multiple proposed system architectures. After a system is deployed, analysts want to determine where security enhancement should be focused by examining how the system is most likely to be successfully penetrated. And when several security enhancement options are being considered, analysts would like to evaluate the relative merits of each. In each of these scenarios, quantitative security metrics should provide insight on system security and aid security decisions. Quantitative metrics enable ranking the alternatives to determine the best option. Quantitative assessments of system security are also valuable for risk management trade-off decisions.
Keywords
security of data; quantitative security metrics; security analysis; security enhancement options; system design; system security; Computational modeling; Laboratories; Measurement; Risk management; Security; Tutorials; US Department of Energy;
fLanguage
English
Publisher
ieee
Conference_Titel
Quantitative Evaluation of Systems (QEST), 2010 Seventh International Conference on the
Conference_Location
Williamsburg, VA
Print_ISBN
978-1-4244-8082-1
Type
conf
DOI
10.1109/QEST.2010.50
Filename
5600376
Link To Document