arrow
返回

Archetypal behavior in computer security

delete2007-10-01
delete8
PRE
AI
S
Shalom N. Rosenfeld *
I
Ioana Rus
M
Michel Cukier
DOI:10.1016/j.jss.2007.01.046delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
The purpose of this study is to understand observed behavior and to diagnose and find solutions to issues encountered in organizational computer security using a systemic approach, namely system archetypes. In this paper we show the feasibility of archetypes application and the benefits of simulation. We developed a model and simulation of some aspects of security based on system dynamics principles. The system dynamics simulation model can be used in support of decision-making, training, and teaching regarding the mitigation of computer security risks. In this paper, we combine two archetypes and show the computer security relevance of such combinations. Presented are instances of the archetypes Escalation, in which an organization must continuously increase its efforts to counter additional attacker effort; and Limits to Growth, in which the gains from an organization's security efforts plateau or decline due to its limited capacity for security-related tasks. We describe a scenario where these archetypes (individually and combined) can help in diagnosis and understanding, and present simulation of what-if scenarios suggesting how an organization might remedy these problems and maximize its gains from security efforts. (c) 2007 Elsevier Inc. All rights reserved.
Keyword:
organization computer security
attacks and countermeasures
system dynamics
system archetypes
system dynamics modeling and simulation
escalation
limits to growth
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

Journal of Systems and Software 封面图
Journal of Systems and Software
IF:
4.1
论文数:
5.4K
被引数:
8.4K

机构

暂无机构信息