A security architecture to protect against the insider threat from damage, fraud and theft

A security architecture to protect against the insider threat from damage, fraud and theft
复制标题

一种安全架构,可防止损坏、欺诈和盗窃等内部威胁

DOI:
10.1145/1558607.1558659
复制
发表时间:
2009
期刊:
--
影响因子:
--
通讯作者:
Blackwell C
Blackwell C
中科院分区:
--
文献类型:
--
作者:
Blackwell C

文献摘要

参考文献

被引文献

相似文献

内部威胁对组织构成了一个严重且日益严重的问题。这一点从美国和其他地方媒体每天报道的欺诈和数据丢失的定期报道中可见一斑。由于内部攻击具有特权访问权限,因此需要提供针对内部攻击的系统保护。我们开发了一个包含物理、逻辑和社会级别的三层安全体系结构,用于全面分析内部威胁,以防止、检测和恢复攻击。我们研究了破坏性的内幕攻击,但同样的分析也可以直接应用于来自金融欺诈和信息窃取的其他主要类别的内幕威胁。我们的实用安全模型似乎广泛应用于其他问题领域,如关键基础设施和金融系统,因为它允许对系统的整体进行分析,包括人为和物理因素,而不仅仅是技术系统。
The insider threat poses a significant and increasing problem for organizations. This is shown by the regular stories of fraud and data loss reported daily in the media in the US and elsewhere. There is a need to provide systematic protection from insider attacks because of their privileged access. We have developed a three-layer security architecture containing the physical, logical and social levels that we use to analyze the insider threat holistically to prevent, detect and recover from attacks. We examine destructive insider attacks, but the same analysis can be straightforwardly applied to the other main classes of insider threat from financial fraud and information theft. Our practical security model appears to have widespread application to other problem domains such as critical infrastructure and financial systems, as it allows the analysis of systems in their entirety including human and physical factors, not just as technical systems.
计算机安全事件的通用语言
DOI: --
发表时间: 1998
期刊:
影响因子: --
作者:
J. D. Howard;T. Longstaff
通讯作者: T. Longstaff
DOI: --
发表时间: 2006
期刊:
影响因子: --
作者:
A. Moore;T. Shimeall;Randall F. Trzeciak
通讯作者: Randall F. Trzeciak