返回
Quantitative Reasoning about Cloud Security Using Service Level Agreements
DOI:10.1109/TCC.2015.2469659.png)
摘要
En 中文
While the economic and technological advantages of cloud computing are apparent, its overall uptake has been limited, in part, due to the lack of security assurance and transparency on the Cloud Service Provider (CSP). Although, the recent efforts on specification of security using Service Level Agreements, also known as Security Level Agreements or secSLAs is a positive development multiple technical and usability issues limit the adoption of Cloud secSLA's in practice. In this paper we develop two evaluation techniques, namely QPT and QHP, for conducting the quantitative assessment and analysis of the secSLA based security level provided by CSPs with respect to a set of Cloud Customer security requirements. These proposed techniques help improve the security requirements specifications by introducing a flexible and simple methodology that allows Customers to identify and represent their specific security needs. Apart from detailing guidance on the standalone and collective use of QPT and QHP, these techniques are validated using two use case scenarios and a prototype, leveraging actual real-world CSP secSLAdata derived from the Cloud Security Alliance's Security, Trust and Assurance Registry.
Keyword:
Cloud security
security metrics
security quantification
security service level agreements
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
I
IF:
5
论文数:
1.8K
被引数:
4.3K
机构
引用论文
Dysregulated NF-κB–Dependent ICOSL Expression in Human Dendritic Cell Vaccines Impairs T-cell Responses in Patients with Melanoma人树突状细胞疫苗中nf-κb依赖性ICOSL表达失调会损害黑色素瘤患者的T细胞反应

