Literature DB >> 30925207

Risk and the Five Hard Problems of Cybersecurity.

Natalie M Scala1, Allison C Reilly2, Paul L Goethals3, Michel Cukier4.   

Abstract

This perspectives article addresses risk in cyber defense and identifies opportunities to incorporate risk analysis principles into the cybersecurity field. The Science of Security (SoS) initiative at the National Security Agency seeks to further and promote interdisciplinary research in cybersecurity. SoS organizes its research into the Five Hard Problems (5HP): (1) scalability and composability; (2) policy-governed secure collaboration; (3) security-metrics-driven evaluation, design, development, and deployment; (4) resilient architectures; and (5) understanding and accounting for human behavior. However, a vast majority of the research sponsored by SoS does not consider risk and when it does so, only implicitly. Therefore, we identify opportunities for risk analysis in each hard problem and propose approaches to address these objectives. Such collaborations between risk and cybersecurity researchers will enable growth and insight in both fields, as risk analysts may apply existing methodology in a new realm, while the cybersecurity community benefits from accepted practices for describing, quantifying, working with, and mitigating risk.
© 2019 Society for Risk Analysis.

Entities:  

Keywords:  Cybersecurity; system design; vulnerability mitigation; “Five Hard Problems”

Year:  2019        PMID: 30925207     DOI: 10.1111/risa.13309

Source DB:  PubMed          Journal:  Risk Anal        ISSN: 0272-4332            Impact factor:   4.000


  1 in total

1.  Leveraging human factors in cybersecurity: an integrated methodological approach.

Authors:  Alessandro Pollini; Tiziana C Callari; Alessandra Tedeschi; Daniele Ruscio; Luca Save; Franco Chiarugi; Davide Guerri
Journal:  Cogn Technol Work       Date:  2021-06-11       Impact factor: 2.818

  1 in total

北京卡尤迪生物科技股份有限公司 © 2022-2023.