Run-Time Risk Management in Adaptive ICT Systems.

Availability, Reliability and Security(2013)

引用 7|浏览0
暂无评分
摘要
We will present results of the SERSCIS project related to risk management and mitigation strategies in adaptive multi-stakeholder ICT systems. The SERSCIS approach involves using semantic threat models to support automated design-time threat identification and mitigation analysis. The focus of this paper is the use of these models at run-time for automated threat detection and diagnosis. This is based on a combination of semantic reasoning and Bayesian inference applied to run-time system monitoring data. The resulting dynamic risk management approach is compared to a conventional ISO 27000 type approach, and validation test results presented from an Airport Collaborative Decision Making (A-CDM) scenario involving data exchange between multiple airport service providers.
更多
查看译文
关键词
type approach,semantic threat model,mitigation strategy,serscis project,data exchange,mitigation analysis,automated threat detection,adaptive ict systems,serscis approach,design-time threat identification,run-time risk management,dynamic risk management approach,risk management
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要