课题基金 / 基金详情

EAGER: A Framework For Economical Cyber Security Inspection and Assurance

EAGER: A Framework For Economical Cyber Security Inspection and Assurance
EAGER:经济的网络安全检查和保证框架
批准号:
1912166
负责人:
Theodore Allen
金额:
$30.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2019
资助国家:
美国
项目状态:
已结题
起止时间:
2019-03-15 至 2022-02-28

项目摘要

项目成果

Theodore Allen的其他基金

相似基金

相关文献

中文摘要
翻译
点击翻译按钮获取中文摘要
英文摘要
This project seeks to develop and apply smart inspection methods to keep the costs of cyber security low, while ensuring the security of scientific results. Many other industries use statistical sampling and sequential inspection methods for quality assurance. Yet, at present much of cyber security relies on attempted inspection of either 100% of items of a given type (such as top priority domain name server logs) or 0% (such as many types of possible hardware inspections). Working across two major universities, Ohio State University and the University of Wisconsin, the project develops new inspection methods, tailored to cyber security objectives. Specific objectives relate to hardware, cyber software vulnerabilities, log inspection, and emergency management and related scientific research. The project explores the usefulness of these new methods to senior quality professionals to support widespread adoption. By working smarter and not harder, scientists using this approach can feel more confident that their results are trustworthy, and, at the same time, the cost curve can be bent so that research can remain cost-competitive.Specifically, the project models security metrics probabilistically and develops patterns of testing to estimate these metrics. The research addresses a variety of domains and cyber security challenges: (1) supercomputing log and hardware inspections, (2) ordinary department vulnerability sampling and estimation and improved logging and sampling (focusing on scientific infrastructure), (3) highly resourced department stratified sampling hardware, improved vulnerability decision-making, and strategic log generation and sampling, and (4) the UW Emergency Management system center. Metrics from attack-defend and standard quality assurance will be explored and serve as validation outputs for the techniques. This project seeks to meet the vital security needs by formulating an assurance framework that adapts and extends existing methods in quality control and assurance to the cyber domain. The assurance framework offers many advantages: it can address sequential decision-making, it can seek solutions that are robust to uncertain data, and it balances cost with threat reduction. The inspection methods to be studied include Multiple Complete Inspection & Inspector Inspection, Attempted 100% Inspection with Optimal Supplementation, Stratified Sampling, Sequential Sampling, and Optimal Multi-Fidelity Inspection. In each case, operating characteristic curves and other estimates of system integrity will be developed and applied. A key and unique element of the proposed approach is the combination of multiple inspection methods, including new methods, to provide a comprehensive framework for cost-effectively enhancing integrity.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(7)
专著(0)
科研奖励(0)
会议论文
DOI: 10.1002/asmb.2487
发表时间: 2019-10
期刊: Applied Stochastic Models in Business and Industry
影响因子: 1.4
作者: [Enhao Liu;T. Allen;Sayak Roychowdhury]
通讯作者: Enhao Liu;T. Allen;Sayak Roychowdhury
DOI: 10.1287/deca.2020.0412
发表时间: 2020-05
期刊: Decis. Anal.
影响因子: --
作者: [T. Allen;Olivia K. Hernandez;A. Alomair]
通讯作者: T. Allen;Olivia K. Hernandez;A. Alomair
DOI: 10.1080/24725854.2020.1781306
发表时间: 2020-07
期刊: IISE Transactions
影响因子: 2.6
作者: [Forough Enayaty-Ahangar;Laura A. Albert;E. Dubois]
通讯作者: Forough Enayaty-Ahangar;Laura A. Albert;E. Dubois
DOI: 10.1016/j.cie.2019.106243
发表时间: 2020-02
期刊: Comput. Ind. Eng.
影响因子: --
作者: [T. Allen;Muer Yang;Shijie Huang;Olivia K. Hernandez]
通讯作者: T. Allen;Muer Yang;Shijie Huang;Olivia K. Hernandez
7
    SBE: TTP Option: Medium: Data-Driven Cyber Vulnerability Maintenance
    • 批准号:
      1409214
    • 项目类别:
      Standard Grant
    • 资助金额:
      $59.45万
    • 财政年份:
      2014
    • 负责人:
      Theodore Allen
    • 依托单位:
    海外基金