CAREER: User-Centered Multiparty Access Control for Collective Content Management
CAREER: User-Centered Multiparty Access Control for Collective Content Management
批准号:
1453080
负责人:
Dongwon Lee
金额:
$55.0万
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2015
资助国家:
美国
项目状态:
已结题
起止时间:
2015-08-01 至 2023-07-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
This CAREER project will develop models and techniques to facilitate controlled information sharing of users' data in domains where the data is associated with and co-managed by multiple users, such as bio-repositories, remote teleworking, and social computing. Specific research objectives are: 1) Building on the PI's prior work, develop a foundational model describing access control in terms of the decision making process of a single content manager or content owner, laying the groundwork for the second objective; 2) Develop new models to support synchronous, asynchronous, and combined joint specification of access control policies for shared content for multiple users and site administrators, and 3) Apply those solution concepts to two specific applications, group work and a biobank, and conduct user studies to test goodness of fit, suitability and feasibility of the resulting access setting mechanisms.This project takes an innovative user-centric approach to ensure that the rigorous models developed result in enforceable mechanisms that can be used on a variety of existing platforms in and multiple domains. To accomplish this, the proposed work draws from multiple disciplines, including access control, game theory for security and privacy, and decision support systems. For example, an individual in a group photo may prefer not to have the photo shared even though others do, but would accept it being shared only with friends; a social network operator wants to maximize use of the system through sharing information while keeping users happy so they remain active. The preferences thus constitute a multi-objective optimization problem. We use a game-theoretic approach to modeling this problem, allowing negotiation to determine access settings. This research will provide users with the ability to express preferred access control settings for shared multi-owned data, jointly influencing with that input the final access settings, while taking into account organizational constraints and existing laws.Further, we leverage the economic concept of first-mover advantage to create models suitable in scenarios where synchronous coordination among users is not practical. In particular, the models start with extensions and applications of Stackelberg games, and account for the unique constraints occurring with security decisions and uncertainty due to human-bounded rationality. As part of this task, we also develop a method for domain administrators to determine what set of access policy options should be offered to users. Through this administrator-centered model, we enable administrators to identify the set of options that satisfy users' predicted access control decisions and meet their administrator's own internal objectives. We also study hybrid models that build on strengths of synchronous and asynchronous multi-party approaches. The models and mechanisms developed will apply to a wide range of domains, including social computing, remote collaborative content co-authoring, personalized medicine, and genetic data sharing.The integrated education plan will focus on curriculum enhancement and expanded undergraduate research experiences. We establish a graduate visiting program to give students experience with different disciplines, recognizing the multidisciplinary challenges in information security. The ultimate goal is to produce diverse graduates with the multidisciplinary skills required to design and evaluate IT security solutions.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: CISE-MSI: RCBP-RF: SaTC: Building Research Capacity in AI Based Anomaly Detection in Cybersecurity
-
批准号:2131144
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2022
-
负责人:Dongwon Lee
-
依托单位:
EAGER: SaTC-EDU: A Framework for Developing Attributable Cybersecurity Case Studies
-
批准号:2114824
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2021
-
负责人:Dongwon Lee
-
依托单位:
Collaborative Research: SaTC: CORE: Small: Privacy protection of Vehicles location in Spatial Crowdsourcing under realistic adversarial models
-
批准号:2029976
-
项目类别:Standard Grant
-
资助金额:$27.28万
-
财政年份:2021
-
负责人:Dongwon Lee
-
依托单位:
REU Site: Machine Learning in Cybersecurity
-
批准号:1950491
-
项目类别:Standard Grant
-
资助金额:$39.0万
-
财政年份:2020
-
负责人:Dongwon Lee
-
依托单位:
Vertical Search Engine and Graph Homomorphism for Enhancing the Cybersecurity Workforce
-
批准号:1934782
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2019
-
负责人:Dongwon Lee
-
依托单位:
Collaborative Research: Precision Learning: Data-Driven Experimentation of Learning Theories using Internet-of-Videos
-
批准号:1940076
-
项目类别:Standard Grant
-
资助金额:$40.0万
-
财政年份:2019
-
负责人:Dongwon Lee
-
依托单位:
Developing and Evaluating Fraud Informatics Curriculum among Institutions in the Appalachian Region
-
批准号:1820609
-
项目类别:Standard Grant
-
资助金额:$49.96万
-
财政年份:2018
-
负责人:Dongwon Lee
-
依托单位:
Penn State's CyberCorps; Scholarship for Service Program
-
批准号:1663343
-
项目类别:Continuing Grant
-
资助金额:$448.03万
-
财政年份:2017
-
负责人:Dongwon Lee
-
依托单位:
EAGER: Training Computers and Humans to Detect Misinformation by Combining Computational and Theoretical Analysis
-
批准号:1742702
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2017
-
负责人:Dongwon Lee
-
依托单位:
SBE TWC: Small: Collaborative: Privacy Protection in Social Networks: Bridging the Gap Between User Perception and Privacy Enforcement
-
批准号:1422215
-
项目类别:Standard Grant
-
资助金额:$27.92万
-
财政年份:2014
-
负责人:Dongwon Lee
-
依托单位:
Unearthing Latent Information Segments of Academic Videos on the Web
-
批准号:0937891
-
项目类别:Standard Grant
-
资助金额:$15.0万
-
财政年份:2009
-
负责人:Dongwon Lee
-
依托单位:
US-Singapore Planning Visit: Collaborative Research on Next Generation Bibliographic Search Engine
-
批准号:0610998
-
项目类别:Standard Grant
-
资助金额:$0.59万
-
财政年份:2006
-
负责人:Dongwon Lee
-
依托单位:
海外基金