Measuring systems security

被引:17
|
作者
Bayuk, Jennifer [1 ]
Mostashari, Ali [1 ]
机构
[1] Stevens Inst Technol, Hoboken, NJ 07030 USA
关键词
systems security; systems engineering; computer security; security metrics;
D O I
10.1002/sys.21211
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Security metrics have evolved side by side with the advent of security tools and techniques. They have been derived from the techniques rather than specified as system requirements. This paper surveys the evolution and state of the practice of security metrics from both a technical and historical perspective. It describes the evolution of currently popular security metrics, and classifies them to illustrate their utility in systems engineering verification and validation activities. It provides criteria with which to evaluate security metrics based on system purpose and architecture. The criteria are illustrated using a case study of Cloud System security. (C) 2012 Wiley Periodicals, Inc. Syst Eng 16:
引用
收藏
页码:1 / 14
页数:14
相关论文
共 50 条
  • [1] A Framework for Measuring Security as a System Property in Cyberphysical Systems
    Zalewski, Janusz
    Buckley, Ingrid A.
    Czejdo, Bogdan
    Drager, Steven
    Kornecki, Andrew J.
    Subramanian, Nary
    [J]. INFORMATION, 2016, 7 (02)
  • [2] Measuring, analyzing and predicting security vulnerabilities in software systems
    Alhazmi, O. H.
    Malaiya, Y. K.
    Ray, I.
    [J]. COMPUTERS & SECURITY, 2007, 26 (03) : 219 - 228
  • [3] Measuring Security
    Bilbao, Alfonso
    Bilbao, Enrique
    [J]. 2013 47TH INTERNATIONAL CARNAHAN CONFERENCE ON SECURITY TECHNOLOGY (ICCST), 2013,
  • [4] Measuring Security
    Stolfo, Sal
    Bellovin, Steven M.
    Evans, David
    [J]. IEEE SECURITY & PRIVACY, 2011, 9 (03) : 60 - 65
  • [5] Measuring and reporting obligations of social security retirement systems: Actuarial perspectives
    D'Ambrogi-Ola, Barbara
    Brown, Robert L.
    [J]. INTERNATIONAL SOCIAL SECURITY REVIEW, 2018, 71 (03) : 13 - 25
  • [6] Measuring job security
    Nardone, T
    Veum, J
    Yates, J
    [J]. MONTHLY LABOR REVIEW, 1997, 120 (06) : 26 - 33
  • [7] Measuring Application Security
    Horn, Christopher
    D'Amico, Anita
    [J]. ADVANCES IN HUMAN FACTORS IN CYBERSECURITY, AHFE 2018, 2019, 782 : 44 - 55
  • [8] Measuring Security Practices
    DeKoven, Louis F.
    Randall, Audrey
    Mirian, Ariana
    Akiwate, Gautam
    Blume, Ansel
    Saul, Lawrence K.
    Schulman, Aaron
    Voelker, Geoffrey M.
    Savage, Stefan
    [J]. COMMUNICATIONS OF THE ACM, 2022, 65 (09) : 93 - 102
  • [9] Measuring the level of security introduced by security patterns
    Fernandez, Eduardo B.
    Yoshioka, Nobukazu
    Washizaki, Hironori
    VanHilst, Michael
    [J]. FIFTH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY, AND SECURITY: ARES 2010, PROCEEDINGS, 2010, : 565 - 568
  • [10] Measuring Security Practices and How They Impact Security
    DeKoven, Louis F.
    Randall, Audrey
    Mirian, Ariana
    Akiwate, Gautam
    Blume, Ansel
    Saul, Lawrence K.
    Schulman, Aaron
    Voelker, Geoffrey M.
    Savage, Stefan
    [J]. IMC'19: PROCEEDINGS OF THE 2019 ACM INTERNET MEASUREMENT CONFERENCE, 2019, : 36 - 49