The Role of Weighted Entropy in Security Quantification
Keywords:
Security, entropy, quantification, risk assessment.Abstract
There is no doubt that an Information System
faces various challenges every day and security is only one of
them. It takes a lot of planning and even more work to keep it
up and running. Faulty wiring, hardware problems,
overloading, new versions, backups are just some of the possible
failing factors. Yet, the probability of their occurrence is almost
impossible to predict. The aim of this paper is to study the
“behavioral model” that the technical risk factors which affect
the security level of an Information System follow and suggest
possible failing points. We will attempt to incorporate a more
practical approach, by using real life scenarios that have
occurred in many corporations, rather than “manufacturing” a
theoretical approach that suits the needs of our findings. To this
end we use data that are publicly available through open source
databases. The analysis proposed, of the data collected,
performed using weighted entropy methodology. Finally, the
output of this research is going to be used as an input to the
proposed model of our research group for quantifying security
using Stochastic Processes[1].
Downloads
Downloads
Published
Issue
Section
License
You are free to:
- Share — copy and redistribute the material in any medium or format for any purpose, even commercially.
- Adapt — remix, transform, and build upon the material for any purpose, even commercially.
- The licensor cannot revoke these freedoms as long as you follow the license terms.
Under the following terms:
- Attribution — You must give appropriate credit , provide a link to the license, and indicate if changes were made . You may do so in any reasonable manner, but not in any way that suggests the licensor endorses you or your use.
- No additional restrictions — You may not apply legal terms or technological measures that legally restrict others from doing anything the license permits.
Notices:
You do not have to comply with the license for elements of the material in the public domain or where your use is permitted by an applicable exception or limitation .
No warranties are given. The license may not give you all of the permissions necessary for your intended use. For example, other rights such as publicity, privacy, or moral rights may limit how you use the material.