Information Security Risk Assessment by using Bayesian Learning Technique

被引:0
|
作者
Foroughi, Farhad [1 ]
机构
[1] Univ Sunderland, Sunderland SR2 7EE, Durham, England
关键词
Bayesian belief network; Bayesian learning; information security; intelligent agent; risk assessment;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The organisations need an information security risk management to evaluate asset's values and related risks. The risk management is usually a human activity which includes risk assessment, strategy development and risk mitigation by using managerial resources. The significant part of risk assessment which identifies threats and vulnerabilities, is very relevant to the past incidents, their likelihood and impacts. The problem is the risk identification and evaluation of new assets according to their properties, current security controls and consequences of before incidents. According to this problem, a system that could assist experts or works on behalf of them to assess the risks during the normal working processes is required. The system should be reactive and autonomous because it is needed to respond immediately and independently of events. An intelligent software agent is the best solution for this aim. It learns risk of past experiences regarding to risk factors and asset's properties, and predicts the probability of new risk for a new instance. This article will describe an intelligent system which is based on Bayesian Learning Technique for Information Security Risk Assessment.
引用
下载
收藏
页码:91 / 95
页数:5
相关论文
共 50 条
  • [1] Information Security Risk Modeling Using Bayesian Index
    Chan, Chien-Lung
    COMPUTER JOURNAL, 2011, 54 (04): : 628 - 638
  • [2] A Method for Information Security Risk Assessment Based on the Dynamic Bayesian Network
    Wang, Jiao
    Fan, Kefeng
    Mo, Wei
    Xu, Dongyang
    PROCEEDINGS 2016 INTERNATIONAL CONFERENCE ON NETWORKING AND NETWORK APPLICATIONS NANA 2016, 2016, : 279 - 283
  • [3] INFORMATION SECURITY RISK ASSESSMENT: BAYESIAN PRIORITIZATION FOR AHP GROUP DECISION MAKING
    Eren-Dogu, Zeynep Filiz
    Celikoglu, Can Cengiz
    INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2012, 8 (11): : 8019 - 8032
  • [4] Information security risk assessment using the AHP method
    Zaburko, J.
    Szulzyk-Cieplak, J.
    IV INTERNATIONAL CONFERENCE OF COMPUTATIONAL METHODS IN ENGINEERING SCIENCE (CMES'19), 2019, 710
  • [5] Risk assessment of ship navigation using Bayesian learning
    Hu Shenping
    Cai Cunqiang
    Fang Quangen
    2007 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING AND ENGINEERING MANAGEMENT, VOLS 1-4, 2007, : 1878 - 1882
  • [6] DECISION SUPPORT BASED ON THE RISK ASSESSMENT OF INFORMATION SYSTEMS AND BAYESIAN LEARNING
    Ocevcic, Hrvoje
    Nenadic, Kresimir
    Solic, Kresimir
    TEHNICKI VJESNIK-TECHNICAL GAZETTE, 2014, 21 (03): : 539 - 544
  • [7] Decision support based on the risk assessment of information systems and bayesian learning
    Metodologija odlučivanja temeljena na procjeni rizika informacijskih sustava i bayesovom učenju
    1600, Strojarski Facultet (21):
  • [8] A VIKOR technique based on DEMATEL and ANP for information security risk control assessment
    Yang, Yu-Ping Ou
    Shieh, How-Ming
    Tzeng, Gwo-Hshiung
    INFORMATION SCIENCES, 2013, 232 : 482 - 500
  • [9] Information Security Risk Assessment in SCM
    Roy, Arup
    Gupta, A. D.
    Deshmukh, S. G.
    2013 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL ENGINEERING AND ENGINEERING MANAGEMENT (IEEM 2013), 2013, : 1002 - 1006
  • [10] Automation of Information Security Risk Assessment
    Akhmetov, Berik
    Lakhno, Valerii
    Chubaievskyi, Vitalyi
    Kaminskyi, Serhii
    Adilzhanova, Saltanat
    Ydyryshbayeva, Moldir
    INTERNATIONAL JOURNAL OF ELECTRONICS AND TELECOMMUNICATIONS, 2022, 68 (03) : 549 - +