NiNSRAPM: An Ensemble Learning Based Non-intrusive Network Security Risk Assessment Prediction Model

Jun-Zheng Yang,Feng Liu, Yuan-Jie Zhao, Lu-Lu Liang,Jia-Yin Qi

2022 7th IEEE International Conference on Data Science in Cyberspace (DSC)(2022)

引用 0|浏览10
暂无评分
摘要
Cybersecurity insurance is one of the important means of cybersecurity risk management and the development of cyber insurance is inseparable from the support of cyber risk assessment technology. Cyber risk assessment can not only help governments and organizations to better protect themselves from related risks, but also serve as a basis for cybersecurity insurance underwriting, pricing, and formulating policy content. Aiming at the problem that cybersecurity insurance companies cannot conduct cybersecurity risk assessments on policyholders before the policy is signed without the authorization of the policyholder or in legal, combining with the need that cybersecurity insurance companies want to obtain network security vulnerability risk profiles of policyholders conveniently, quickly and at low cost before the policy signing, this study proposed a non-intrusive network security vulnerability risk assessment method based on ensemble machine learning. Our model uses only open source intelligence and publicly available network information data to rate cyber vulnerability risk of an organization, achieving an accuracy of 70.6% compared to a rating based on comprehensive information by cybersecurity experts.
更多
查看译文
关键词
network security risk assessment,cybersecurity insurance,ensemble machine learning
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要