A comprehensive objective network security metric framework for proactive security configuration

  • Authors:
  • Ehab Al-Shaer;Latifur Khan;Mohammad Salim Ahmed

  • Affiliations:
  • DePaul University;The University of Texas at Dallas;The University of Texas at Dallas

  • Venue:
  • Proceedings of the 4th annual workshop on Cyber security and information intelligence research: developing strategies to meet the cyber security and information intelligence challenges ahead
  • Year:
  • 2008

Quantified Score

Hi-index 0.00

Visualization

Abstract

In order to create secure and dependable systems and information intelligence, it is a major challenge to determine the security level of the network. This security level depends on a number of dynamically changing factors including emerging of new vulnerabilities and threats, policy updates and network traffic. An effective means to address this is to identify security metrics that measure the quality of security configuration objectively and dynamically. In this extended abstract, we propose a comprehensive security metric framework called Risk based prOactive seCurity cOnfiguration maNAger (ROCONA) that identifies and quantifies objectively the most significant security risk factors, which include existing and future vulnerabilities based on historical trends, security configuration immunity to attack occurrence and propagation, and traffic trends that reflect the insider and outsider user behavior.