A Semantic Approach for Automating Knowledge in Policies of Cyber Insurance Services

被引:7
|
作者
Joshi, Ketki [1 ]
Joshi, Karuna Pande [1 ]
Mittal, Sudip [2 ]
机构
[1] Univ Maryland, Dept Informat Syst, Baltimore, MD 21250 USA
[2] Univ Maryland, CSEE Dept, Baltimore, MD 21250 USA
关键词
Cyber Insurance; Ontology; Knowledge Representation; Policies;
D O I
10.1109/ICWS.2019.00018
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
With the rapid adoption of web services, the need to protect against various threats has become imperative for organizations operating in cyberspace. Organizations are increasingly opting to get financial cover in the event of losses due to a security incident. This helps them safeguard against the threat posed to third-party services that the organization uses. It is in the organization's interest to understand the insurance requirements and procure all necessary direct and liability coverages. This helps transfer some risks to the insurance providers. However, cyber insurance policies often list details about coverages and exclusions using legalese that can be difficult to comprehend. Currently, it takes a significant manual effort to parse and extract knowledgeable rules from these lengthy and complicated policy documents. We have developed a semantically rich machine processable framework to automatically analyze cyber insurance policy and populate a knowledge graph that efficiently captures various inclusion and exclusion terms and rules embedded in the policy. In this paper, we describe this framework that has been built using technologies from AI, including Semantic Web, Modal/ Deontic Logic, and Natural Language Processing. We have validated our approach using industry standards proposed by the United States Federal Trade Commission (FTC) and applying it against publicly available policies of 7 cyber insurance vendors. Our system will enable cyber insurance seekers to automatically analyze various policy documents and make a well-informed decision by identifying its inclusions and exclusions.
引用
收藏
页码:33 / 40
页数:8
相关论文
共 50 条
  • [21] An approach to automating transaction management in a data services platform
    Padmanabhuni, Srinivas
    Kunti, Krishnendu
    Chawla, Mohit
    Saxena, Sunny
    Rolet, Philippe
    Gopalan, Manivannan
    INTERNATIONAL CONFERENCE ON NEXT GENERATION WEB SERVICES PRACTICES, PROCEEDINGS, 2006, : 49 - +
  • [22] Compliance checking of privacy policies for Semantic Web Services
    Denker, G
    Nguyen, S
    Proceedings of the 8th Joint Conference on Information Sciences, Vols 1-3, 2005, : 1421 - 1424
  • [23] Incremental stages of a semantic framework for automating the changes on long term composed services
    Thirumaran, M.
    Brendha, G. Gayathry
    HUMAN-CENTRIC COMPUTING AND INFORMATION SCIENCES, 2016, 6
  • [24] Cyber Insurance and Time-to-Compromise: An Integrated Approach
    Uuganbayar, Ganbayar
    Massacci, Fabio
    Yautsiukhin, Artsiom
    Martinelli, Fabio
    2019 INTERNATIONAL CONFERENCE ON CYBER SITUATIONAL AWARENESS, DATA ANALYTICS AND ASSESSMENT (CYBER SA), 2019,
  • [25] Development of semantic web services at the knowledge level
    Gómez-Pérez, A
    González-Cabero, R
    Lama, M
    WEB SERVICES, PROCEEDINGS, 2004, 3250 : 72 - 86
  • [26] Semantic Knowledge Management and Integration Services for AAL
    Modoni, Gianfranco E.
    Veniero, Mario
    Sacco, Marco
    AMBIENT ASSISTED LIVING, 2017, 426 : 287 - 299
  • [27] Knowledge management technologies for semantic multimedia services
    Changhoon Lee
    Wenny Rahayu
    Uyen Trang Nguyen
    Multimedia Tools and Applications, 2014, 71 : 195 - 198
  • [28] Knowledge management technologies for semantic multimedia services
    Lee, Changhoon
    Rahayu, Wenny
    Uyen Trang Nguyen
    MULTIMEDIA TOOLS AND APPLICATIONS, 2014, 71 (01) : 195 - 198
  • [29] Designing Cyber Insurance Policies: The Role of Pre-Screening and Security Interdependence
    Khalili, Mohammad Mahdi
    Naghizadeh, Parinaz
    Liu, Mingyan
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (09) : 2226 - 2239
  • [30] Knowledge intensive business services: prospects and policies
    Miles, Ian
    FORESIGHT, 2005, 7 (06): : 39 - +