Show simple item record

dc.contributor.authorSchryen, Guido
dc.contributor.editorFreiling, Felix C.
dc.date.accessioned2019-01-17T13:26:54Z
dc.date.available2019-01-17T13:26:54Z
dc.date.issued2010
dc.identifier.isbn978-3-88579-264-2
dc.identifier.issn1617-5468
dc.identifier.urihttp://dl.gi.de/handle/20.500.12116/19790
dc.description.abstractThis paper presents a fuzzy set based decision support model for taking uncertainty into account when making security investment decisions for distributed systems. The proposed model is complementary to probabilistic approaches and useful in situations where probabilistic information is either unavailable or not appropriate to reliably predict future conditions. We first present the specification of a formal security language that allows to specify under which conditions a distributed system is protected against security violations. We show that each term of the security language can be transformed into an equivalent propositional logic term. Then we use propositional logic terms to define a fuzzy set based decision model. This optimization model incorporates uncertainty with regard to the impact of investments on the achieved security levels of components of the distributed system. The model also accounts for budget and security constraints, in order to be applicable in practice.en
dc.language.isoen
dc.publisherGesellschaft für Informatik e.V.
dc.relation.ispartofSicherheit 2010. Sicherheit, Schutz und Zuverlässigkeit
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-170
dc.titleA fuzzy model for IT security investmentsen
dc.typeText/Conference Paper
dc.pubPlaceBonn
mci.reference.pages289-303
mci.conference.sessiontitleRegular Research Papers
mci.conference.locationBerlin
mci.conference.date5.-7. Oktober 2010


Files in this item

Thumbnail

Show simple item record