A Preventive and Risk-reducing Integrated Security Management Model using Security Label 


Vol. 10,  No. 6, pp. 815-824, Oct.  2003
10.3745/KIPSTC.2003.10.6.815


PDF
  Abstract

Many organizations operate security systems and manage them using the integrated security management (ISM) technology to secure their network environment effectively. But current ISM is passive and behaves post-event manner. To reduce cost and resource for managing security and to remove possibility of succeeding in attacks by intruder, the preventive security management technology is required. In this paper, we propose PRISM model that performs preventative security management with evaluating the security level of host or network and the sensitivity level of information asset. PRISM compares the security level with the sensitivity level to decide appropriate security measures for protecting that asset from potential risks before security incidents occur. The PRISM can give concrete and effective security management in managing the current complex networks

  Statistics


  Cite this article

[IEEE Style]

K. D. Su, K. T. Gyeong, J. T. Myeong, "A Preventive and Risk-reducing Integrated Security Management Model using Security Label," The KIPS Transactions:PartC, vol. 10, no. 6, pp. 815-824, 2003. DOI: 10.3745/KIPSTC.2003.10.6.815.

[ACM Style]

Kim Dong Su, Kim Tae Gyeong, and Jeong Tae Myeong. 2003. A Preventive and Risk-reducing Integrated Security Management Model using Security Label. The KIPS Transactions:PartC, 10, 6, (2003), 815-824. DOI: 10.3745/KIPSTC.2003.10.6.815.