Publication | Closed Access
Run-Time Risk Management in Adaptive ICT Systems
14
Citations
8
References
2013
Year
Unknown Venue
EngineeringInformation SecuritySemantic ReasoningSecurity AssessmentSoftware EngineeringAdaptive ComputingCyber-risk ManagementAdaptive Ict SystemsData ScienceRisk ManagementManagementSystems EngineeringSelf-adaptive SystemSerscis ApproachPredictive AnalyticsComputer ScienceInformation ManagementSystem ManagementSerscis ProjectThreat CharacterizationAutomationThreat HuntingCyber Threat IntelligenceThreat Model
We will present results of the SERSCIS project related to risk management and mitigation strategies in adaptive multi-stakeholder ICT systems. The SERSCIS approach involves using semantic threat models to support automated design-time threat identification and mitigation analysis. The focus of this paper is the use of these models at run-time for automated threat detection and diagnosis. This is based on a combination of semantic reasoning and Bayesian inference applied to run-time system monitoring data. The resulting dynamic risk management approach is compared to a conventional ISO 27000 type approach, and validation test results presented from an Airport Collaborative Decision Making (A-CDM) scenario involving data exchange between multiple airport service providers.
| Year | Citations | |
|---|---|---|
Page 1
Page 1