A Framework for Ranking Cloud Security Services

被引:3
|
作者
Taha, Ahmed [1 ]
Trapero, Ruben [2 ]
Luna, Jesus [1 ]
Suri, Neeraj [1 ]
机构
[1] Tech Univ Darmstadt, Darmstadt, Germany
[2] Atos Res & Innovat, Madrid, Spain
关键词
Cloud security; security quantification; security service level agreements; SELECTION;
D O I
10.1109/SCC.2017.48
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Although the use of Cloud services is proliferating, the notion of Cloud security remains ambiguous. This typically arises from two causes, namely (a) the limited awareness about security details by the average Cloud customer which results in the customers being unable to clearly express their security requirements, or (b) the lack of interfaces/tools that can meaningfully capture the customer requirements. In general, the Cloud customers are only able to provide qualitative requirements due to their inability to express precise security requirements. Nevertheless, Cloud customers still need to assess and benchmark various security services provided by different providers in order to select the most suitable Cloud provider that can satisfy their "imprecise and uncertain" security requirements. This paper proposes a methodology for enhancing the security aspects of Cloud services by quantitatively comparing the customer security requirements with the security offered by Cloud providers. The novelty of our approach is based on the usage of a fuzzy logic schema to manage the uncertainty of those qualitative requirements. We validate our framework by applying it to real-world data that leverages the standardized Cloud service level agreements structure proposed in the ISO/IEC 19086 standard.
引用
收藏
页码:322 / 329
页数:8
相关论文
共 50 条
  • [1] A framework for ranking of cloud computing services
    Garg, Saurabh Kumar
    Versteeg, Steve
    Buyya, Rajkumar
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2013, 29 (04): : 1012 - 1023
  • [2] Security Framework for IoT Cloud Services
    Pacheco, Jesus
    Tunc, Cihan
    Hariri, Salim
    [J]. 2018 IEEE/ACS 15TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2018,
  • [3] A Data Security Framework for Cloud Computing Services
    Bautista-Villalpando, Luis-Eduardo
    Abran, Alain
    [J]. COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2021, 37 (02): : 203 - 218
  • [4] A Novel Privacy and Security Framework for the Cloud Network Services
    Singh, Irish
    Mishra, Kamta Nath
    Alberti, Antonio M.
    Jara, Antonio
    Singh, Dhananjay
    [J]. 2015 17TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT), 2015, : 363 - 367
  • [5] A Novel Privacy and Security Framework for the Cloud Network Services
    Singh, Irish
    Mishra, K. N.
    Alberti, Antonio M.
    Singh, Dhananjay
    Jara, Antonio
    [J]. 2015 9TH INTERNATIONAL CONFERENCE ON INNOVATIVE MOBILE AND INTERNET SERVICES IN UBIQUITOUS COMPUTING IMIS 2015, 2015, : 301 - 305
  • [6] A computational framework for ranking prediction of cloud services under fuzzy environment
    Kumar, Rakesh Ranjan
    Shameem, Mohammad
    Kumar, Chiranjeev
    [J]. ENTERPRISE INFORMATION SYSTEMS, 2022, 16 (01) : 167 - 187
  • [7] Security framework for RESTful mobile cloud computing Web services
    AlShahwan, Feda
    Faisal, Maha
    Ansa, Godwin
    [J]. JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2016, 7 (05) : 649 - 659
  • [8] Security framework for RESTful mobile cloud computing Web services
    Feda AlShahwan
    Maha Faisal
    Godwin Ansa
    [J]. Journal of Ambient Intelligence and Humanized Computing, 2016, 7 : 649 - 659
  • [9] A Robust Security Framework for Cloud-based Logistics Services
    Srinivasan, Kathiravan
    Gupta, Takshi
    Agarwal, Punjal
    Nema, Anant
    [J]. PROCEEDINGS OF 4TH IEEE INTERNATIONAL CONFERENCE ON APPLIED SYSTEM INNOVATION 2018 ( IEEE ICASI 2018 ), 2018, : 162 - 165
  • [10] A hybrid model for ranking Cloud Services
    De Benedetti, Massimiliano
    D'Urso, Fabio
    Messina, Fabrizio
    Pappalardo, Giuseppe
    Santoro, Corrado
    [J]. 2015 10TH INTERNATIONAL CONFERENCE ON P2P, PARALLEL, GRID, CLOUD AND INTERNET COMPUTING (3PGCIC), 2015, : 504 - 509