Security and Business Situational Awareness

نویسندگان

  • Roland Rieke
  • Maria Zhdanova
  • Jürgen Repp
چکیده

“Security needs to be aligned with business”. Business situational awareness is the ability to continually monitor ongoing actions and events related to business operations and estimate the immediate and close-future impact of the new information. This ability is crucial for business continuity and should encompass all associated aspects. Considering the growing dependability of businesses on IT on the one hand, and ever increasing threats on the other, IT security aspects should get adequate attention in the awareness system. We present an approach to raise business situational awareness using an advanced method of predictive security analysis at runtime. It continually observes a system’s event stream to find deviations from specified behavior and violations of security compliance rules. Operational models of the key processes are utilized to predict critical security states, evaluate possible countermeasures, and trigger corrective actions. A security information model maintains the security strategy and explains possible deviations from the originating goal. The approach is demonstrated on an industrial scenario from a European research project.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

The Contributions of Information Security Culture and Human Relations to the Improvement of Situational Awareness

The chapter gives an overview of business practices and how people and human relations influence situational awareness and information security in an organization. There is still a long way to go in training employees in information security and improving employees’ information security awareness. Motivated and trained employees have the ability to detect and report security weaknesses and brea...

متن کامل

Building Maritime Security Situational Awareness

Maritime domain security relies on the ability to build a comprehensive awareness of maritime activity. Although it is still in the developmental stages situational awareness is the prerequisite of maritime domain security. Today technological developments such as space‐based systems, over‐the‐horizon radar, and near‐ shore and harbour acoustics can be incorporated into...

متن کامل

A Public-Private-Partnership Model for Na- tional Cyber Situational Awareness

The information age has led to the merger of various infrastructures, from both business and governmental sectors and their functions, such as information technology, communication and transport systems, banking and finance, energy supply and process control systems. The protection of these systems is essential to resilience and reliability of critical infrastructures and their key resources, c...

متن کامل

Visualisation for Network Situational Awareness in Computer Network Defence

Situational awareness is essential for decision makers to efficiently manage their resources. Situational awareness has historically been associated with aviation security applications, such as air traffic control (ATC), fighter missions, and missile defence. However, the number of studies in the field of situational awareness for new applications has grown significantly in the past fifteen yea...

متن کامل

A cross-cultural investigation of situational information security awareness programs

Purpose – The aim of this research is to make users aware of the importance surrounding the issue of security and security awareness while at the same time making educators as well as other individuals aware of the differing effects of cultural dimensions into the learning process. Design/methodology/approach – An inter-cultural study was conducted to investigate if users from the USA and Taiwa...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2015