A MULTI-LAYER TREE MODEL FOR ENTERPRISE VULNERABILITY MANAGEMENT

被引:0
|
作者
Wu, Bin [1 ]
Wang, Andy Ju An [1 ]
机构
[1] Southern Polytech State Univ, Marietta, GA 30060 USA
基金
美国国家科学基金会;
关键词
Enterprise vulnerability; Multi-level tree model; Assessment; EVMAT; NVD;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Conducting enterprise-wide vulnerability assessment (VA) on a regular basis plays an important role in assessing an enterprise's information system security status. However, an enterprise network is always very complex, separated into different types of zones, and consisting hundreds of hosts in the networks. The complexity of IT system makes VA an extremely time-consuming task for security professionals. They are seeking for an automated tool that helps monitor and manage the overall vulnerability of an enterprise. This paper presents a novel methodology that provides a dashboard solution for managing enterprise level vulnerability. In our methodology, we develop a multi-layer tree based model to describe enterprise vulnerability topology. Then we apply a client/server structure to gather vulnerability information from enterprise resources automatically. Finally a set of well-defined metric formulas is applied to produce a normalized vulnerability score for the whole enterprise. We also developed the implementation of our methodology, EVMAT, and Enterprise Vulnerability Management and Assessment Tool, to test our method. Experiments on a small E-commerce company and a small IT company demonstrate the great potentials of our tool for enterprise-level security.
引用
收藏
页码:389 / 394
页数:6
相关论文
共 50 条
  • [41] A multi-layer box model of carbon dynamics in soil
    Kuc, T
    NUKLEONIKA, 2005, 50 (02) : 49 - 55
  • [42] A Multi-layer Feature Fusion Model for Biometric Systems
    Soviany, Sorin
    Puscoci, Sorin
    Sandulescu, Virginia
    Serbanescu, Florin
    2021 INTERNATIONAL CONFERENCE ON E-HEALTH AND BIOENGINEERING (EHB 2021), 9TH EDITION, 2021,
  • [43] An Interdependent Multi-Layer Model: Resilience of International Networks
    Caschili, Simone
    Medda, Francesca Romana
    Wilson, Alan
    NETWORKS & SPATIAL ECONOMICS, 2015, 15 (02): : 313 - 335
  • [44] Multi-Layer Perceptron Model for Air Quality Prediction
    Abdullah, S.
    Ismail, M.
    Ahmed, A. N.
    MALAYSIAN JOURNAL OF MATHEMATICAL SCIENCES, 2019, 13 : 85 - 95
  • [45] Multi-layer description model for radon concentration in soil
    M. Orabi
    The European Physical Journal Plus, 133
  • [46] A model for tunneling current in multi-layer tunnel dielectrics
    Govoreanu, B
    Blomme, P
    Rosmeulen, M
    Van Houdt, J
    De Meyer, K
    SOLID-STATE ELECTRONICS, 2003, 47 (06) : 1045 - 1053
  • [47] A Multi-layer Composite Model for Human Pose Estimation
    Duan, Kun
    Batra, Dhruv
    Crandall, David
    PROCEEDINGS OF THE BRITISH MACHINE VISION CONFERENCE 2012, 2012,
  • [48] A Multi-layer Scene Model for Video Surveillance Applications
    Huang, Chung-Hsien
    Wu, Ruei-Cheng
    ADVANCES IN MULTIMEDIA INFORMATION PROCESSING-PCM 2010, PT I, 2010, 6297 : 68 - 79
  • [49] Performance measures of a multi-layer Markovian fluid model
    Nigel G. Bean
    Małgorzata M. O’Reilly
    Annals of Operations Research, 2008, 160 : 99 - 120
  • [50] Breaking wave field statistics with a multi-layer model
    Wu, Jiarong
    Popinet, Stephane
    Deike, Luc
    JOURNAL OF FLUID MECHANICS, 2023, 968