Measuring Security

  • Authors:
  • Sal Stolfo;Steven M. Bellovin;David Evans

  • Affiliations:
  • Columbia University;Columbia University;University of Virginia

  • Venue:
  • IEEE Security and Privacy
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

To become a legitimate science, computer security requires metrics. However, metrics are the one thing most lacking in our current understanding of computer security. Computer security metrics can be based on computational complexity or on economic or biological metaphors, or they can be empirical. Any successful metric must address multiple layers of security.