Author:
Zhao Xiaolin,Zhao Jingjing,Jiang Xiaoyi,Zhang Xiaoyu,Zhang Wentai
Abstract
Abstract
Cyberspace security involves national security, enterprise security, personal privacy security and so on, which has been paid more and more attention by the state. Cyberspace security measurement is an important step to protect any network. The important premise is to establish a reasonable and universal security measurement framework for network systems. But the network is very complex, and the network security state is changing all the time. Existing information security models lack the description of network behavior. Aiming at this problem, in this paper, the existing information security models at home and abroad are compared and analysed, and their advantages and disadvantages are summarized. Based on PDR (Protection, Detection, Response) model, this paper adds management functions, and optimizes the original concept of PDR model. On this basis, we add characteristic measurement, efficiency measurement and impact measurement to form 12 indicators to dynamically reveal the evolution mechanism of security characteristics measurement indicators. AHP is used to distribute the weight of each dimension, and the network is evaluated quantitatively from four dimensions: detection, protection, response and management. The framework of the proposed metric framework is verified by experiments.
Subject
General Physics and Astronomy
Reference26 articles.
1. An alternative architectural framework to the osi security model;Stergiou;J Computers & Security,2004
2. Towards a Strategic Resilience of Applications through the NIST Cybersecurity Framework and the Strategic Alignment Model (SAM);Belalcazar,2017
3. American ficic framework and its influence analysis;Liu;J Information Security in China,2014
4. Safety Protection Measures of Level 3 Information Security Protection Standard;Zhang;Cyberspace security Technology and Application,2017
Cited by
1 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. Cyber Resilience Modelling for the Operations of Hybrid Network;2022 IEEE Intl Conf on Dependable, Autonomic and Secure Computing, Intl Conf on Pervasive Intelligence and Computing, Intl Conf on Cloud and Big Data Computing, Intl Conf on Cyber Science and Technology Congress (DASC/PiCom/CBDCom/CyberSciTech);2022-09-12