Information assurance modeling using the Department of Defense architecture framework

  • Authors:
  • Ryan O'Farrell;Sriharsha Banavara;Donald Folds;John A. Hamilton, Jr.

  • Affiliations:
  • Auburn University;Auburn University;Auburn University;Auburn University

  • Venue:
  • SpringSim '10 Proceedings of the 2010 Spring Simulation Multiconference
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Information assurance modeling is an important part of the overall security of an information technology system. In this paper we discuss the implementation of an Information Assurance Model using Department of Defense Architecture Framework so as to have traceability between systems and requirements. An assessment of the potential threats to a development effort is presented. Residual Risk was calculated using quantitative analysis. We describe a procedure to analyze the operational risk of an IT system using the DoDAF architecture and relate this operational risk to battlefield risk. We then present the verification and validation of the model. DIACAP scorecard and CNSSI 1253 control set are used as mediums to relate implementation and model.