Skip to main navigation Skip to search Skip to main content

Intrusion countermeasures security model based on prioritization scheme for intranet access security (emerging concepts category)

  • SUNY Buffalo

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

3 Scopus citations

Abstract

Access controls and perimeter defenses are essential parts of an enterprise's security armory. However, for a comprehensive intranet security strategy, such defenses alone may not be enough. An enterprise needs mechanisms to analyze alerts and detect real attacks, and policies on how to respond to attacks. A framework for effective response to detection of misuse or attack is a central theme. The focus is towards security of corporate intranets. We first discuss the access control models that are currently being deployed and used at most intranet solutions. Using role based access control as a base, we develop a framework of interaction of various entities in the model. We then propose a prioritization scheme based on cost of impact in case of misuse and business criticality of transactions. The scheme is developed based on categorization and prioritization of risk and vulnerability assessment results for an enterprise intranet. Alerts are a critical element of a real-time response, but how alert engines operate and filter tons of log data decides the effectiveness of such infrastructure. We propose incorporation of priority schemes into alert mechanisms to develop a more effective intrusion countermeasure against misuse and attack. It leverages the enterprise's investment in security technology to develop an optimized solution to respond to those attacks, by advising the enterprise's on-site administrators.

Original languageEnglish
Title of host publicationIEEE Systems, Man and Cybernetics Society Information Assurance Workshop
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages174-181
Number of pages8
ISBN (Electronic)0780378083, 9780780378087
DOIs
StatePublished - 2003
EventIEEE Systems, Man and Cybernetics Society Information Assurance Workshop - West Point, United States
Duration: Jun 18 2003Jun 20 2003

Publication series

NameIEEE Systems, Man and Cybernetics Society Information Assurance Workshop

Conference

ConferenceIEEE Systems, Man and Cybernetics Society Information Assurance Workshop
Country/TerritoryUnited States
CityWest Point
Period06/18/0306/20/03

Keywords

  • Access control
  • Authorization
  • Computer science
  • Costs
  • Data security
  • Filters
  • Information security
  • Investments
  • Search engines
  • USA Councils

Fingerprint

Dive into the research topics of 'Intrusion countermeasures security model based on prioritization scheme for intranet access security (emerging concepts category)'. Together they form a unique fingerprint.

Cite this