Title :
On System Security Metrics and the Definition Approaches
Author_Institution :
TELECOMParisTech (ENST), Paris
Abstract :
In this survey paper, we assess existing approaches to security metric definition. We classify proposed definitions and discuss their advantages and problems. We argue that without a more restrictive definition, the apparently common term degenerates to a mere buzzword, which can be dangerous in terms of suggested comparability. We conclude with some guidelines on IS metric definition and sketch an alternative concept for the operational IS security evaluation.
Keywords :
security of data; IS metric definition; IS security evaluation; buzzword; definition approaches; restrictive definition; system security metrics; Auditory system; Displays; Guidelines; Information security; Monitoring; NIST; National security; Paper technology; Proposals; Telecommunications; IS metrics; definition approaches;
Conference_Titel :
Emerging Security Information, Systems and Technologies, 2008. SECURWARE '08. Second International Conference on
Conference_Location :
Cap Esterel
Print_ISBN :
978-0-7695-3329-2
Electronic_ISBN :
978-0-7695-3329-2
DOI :
10.1109/SECURWARE.2008.37