Publicação
Design of a case-based reasoner for information security in military organizations
| Resumo: | Information security is concerned with the protection of information, which can be stored, processed or transmitted within critical information systems of the organizations, against loss of confidentiality, integrity or availability. Protection measures to prevent these problems result through the implementation of controls at several dimensions: technical, administrative or physical. A vital objective for military organizations is to ensure superiority in contexts of information warfare and competitive intelligence. Therefore, the problem of information security in military organizations has been a topic of intensive work at both national and transnational levels, and extensive conceptual and standardization work is being produced. A current effort is therefore to develop automated decision support systems to assist military decision makers, at different levels in the command chain, to provide suitable control measures that can effectively deal with potential attacks and, at the same time, prevent, detect and contain vulnerabilities targeted at their information systems. The concept and processes of the Case-Based Reasoning (CBR) methodology outstandingly resembles classical military processes and doctrine, in particular the analysis of “lessons learned” and definition of “modes of action”. Therefore, the present paper addresses the modeling and design of a CBR system with two key objectives: to support an effective response in context of information security for military organizations; to allow for scenario planning and analysis for training and auditing processes. |
|---|---|
| Autores principais: | Borges, José |
| Outros Autores: | Martins, José; Andrade, Jorge; Santos, Henrique |
| Assunto: | Conceptual model for information security Case-based reasoning Decision support system Method of attack Information security controls |
| Ano: | 2015 |
| País: | Portugal |
| Tipo de documento: | comunicação em conferência |
| Tipo de acesso: | acesso aberto |
| Instituição associada: | Universidade do Minho |
| Idioma: | inglês |
| Origem: | RepositóriUM - Universidade do Minho |
Registos relacionados
article Information technologies and cyber security
por: Orvalho, Luísa
Publicado em: (2023)
por: Orvalho, Luísa
Publicado em: (2023)
article Information systems security policies : a survey in portuguese public administration
por: Lopes, Isabel Maria
Publicado em: (2010)
por: Lopes, Isabel Maria
Publicado em: (2010)
article Information security policies: a content analysis
por: Lopes, Isabel Maria
Publicado em: (2012)
por: Lopes, Isabel Maria
Publicado em: (2012)
school Information systems security outsourcing key issues: a service providers’ perspective
por: Pereira, Luís Filipe Xavier
Publicado em: (2011)
por: Pereira, Luís Filipe Xavier
Publicado em: (2011)
article Information systems security outsourcing key issues: a service providers' perspective
por: Pereira, Luís
Publicado em: (2012)
por: Pereira, Luís
Publicado em: (2012)
article Applying action research in the adoption of information systems security policies
por: Lopes, Isabel
Publicado em: (2013)
por: Lopes, Isabel
Publicado em: (2013)
article OSSEC IDS extension to improve log analysis and override false positive or negative detections
por: Teixeira, Diogo
Publicado em: (2019)
por: Teixeira, Diogo
Publicado em: (2019)
article Injecting security into information systems development
por: Lapke, Michael
Publicado em: (2010)
por: Lapke, Michael
Publicado em: (2010)
article Key issues in information systems security management
por: Polónia, Fernando
Publicado em: (2013)
por: Polónia, Fernando
Publicado em: (2013)
article Information systems security management key issues in local government
por: Soares, Delfina de Sá
Publicado em: (2014)
por: Soares, Delfina de Sá
Publicado em: (2014)
article Institutionalization of information systems security policies adoption: factors and guidelines
por: Lopes, Isabel Maria
Publicado em: (2014)
por: Lopes, Isabel Maria
Publicado em: (2014)
groups Competence-based model for securing the in-ternet of things in organizations
por: Silva, Rui
Publicado em: (2016)
por: Silva, Rui
Publicado em: (2016)
article Information systems security policies adoption: an institutional theory view
por: Lopes, Isabel
Publicado em: (2014)
por: Lopes, Isabel
Publicado em: (2014)
article Improving data modelling through the use of case-based-reasoning
por: Tomé, Paulo
Publicado em: (2007)
por: Tomé, Paulo
Publicado em: (2007)
article Information technologies for the information agent
por: Magalhães, Paulo Sérgio Tenreiro
Publicado em: (2007)
por: Magalhães, Paulo Sérgio Tenreiro
Publicado em: (2007)
article Information security value in e-entrepreneurship
por: Nunes, Sérgio
Publicado em: (2012)
por: Nunes, Sérgio
Publicado em: (2012)
category Special issue on social and ethical aspects of secure computing
por: Soares, Filipe de Sá
Publicado em: (2008)
por: Soares, Filipe de Sá
Publicado em: (2008)
article Adoption of information sistems security policies in Mozambican universities
por: Lopes, Isabel Maria
Publicado em: (2018)
por: Lopes, Isabel Maria
Publicado em: (2018)
article Synthesizing datasets with security threats for vehicular ad-hoc networks
por: Gonçalves, Fábio Raul Costa
Publicado em: (2020)
por: Gonçalves, Fábio Raul Costa
Publicado em: (2020)
category A tribute to José Manuel Valença
por: Oliveira, José Nuno Fonseca
Publicado em: (2022)
por: Oliveira, José Nuno Fonseca
Publicado em: (2022)
category Special issue on information and communication technology for better mitigation of extreme events
por: Dhillon, Gurpreet
Publicado em: (2009)
por: Dhillon, Gurpreet
Publicado em: (2009)
article Re-using experience in information systems development
por: Tomé, Paulo
Publicado em: (2007)
por: Tomé, Paulo
Publicado em: (2007)
article Using Case Based Reasoning and principled negotiation to provide decision support for dispute resolution
por: Carneiro, Davide Rua
Publicado em: (2013)
por: Carneiro, Davide Rua
Publicado em: (2013)
article Information security concerns in IT outsourcing: Identifying (in) congruence between clients and vendors
por: Dhillon, Gurpreet
Publicado em: (2017)
por: Dhillon, Gurpreet
Publicado em: (2017)
school Método de planeamento de segurança da informação para organizações militares em ambiente de guerra de informação
por: Martins, José Carlos Lourenço
Publicado em: (2015)
por: Martins, José Carlos Lourenço
Publicado em: (2015)
groups The role of organizational competence on information security job performance
por: Kaur, Joti
Publicado em: (2021)
por: Kaur, Joti
Publicado em: (2021)
article Reasoning about time in dynamic information displays
por: Campos, J. Creissac
Publicado em: (2001)
por: Campos, J. Creissac
Publicado em: (2001)
article An evolutionary computing approach to diabetic foot analysis
por: Neves, João
Publicado em: (2018)
por: Neves, João
Publicado em: (2018)
article Health information systems (HIS) privacy restrictions for GDPR: Assessing initial impacts perceived by patients and healthcare professionals
por: Carvalho, Marcelo
Publicado em: (2021)
por: Carvalho, Marcelo
Publicado em: (2021)
article A case-based approach to colorectal cancer detection
por: Morgado, Pedro
Publicado em: (2017)
por: Morgado, Pedro
Publicado em: (2017)
article A task recommendation system for children and youth with autism spectrum disorder
por: Costa, Margarida
Publicado em: (2017)
por: Costa, Margarida
Publicado em: (2017)
article Data security and trustworthiness in online public services: An assessment of Portuguese institutions
por: Silva, João Marco C.
Publicado em: (2019)
por: Silva, João Marco C.
Publicado em: (2019)
article Reinforcing assessment processes using proactive case-based reasoning mechanisms
por: Leite, Jaime
Publicado em: (2023)
por: Leite, Jaime
Publicado em: (2023)
article Interpreting legislative controls of DNA databases
por: Soares, Filipe de Sá
Publicado em: (2010)
por: Soares, Filipe de Sá
Publicado em: (2010)
draft The impact of securities regulation on the information environment around stock-financed acquisitions
por: Loureiro, Gilberto
Publicado em: (2021)
por: Loureiro, Gilberto
Publicado em: (2021)
school Gerador de eventos para testes de configurações de um SIEM
por: Mendonça, Nuno Miguel Lobão
Publicado em: (2015)
por: Mendonça, Nuno Miguel Lobão
Publicado em: (2015)
article Handling default data under a case-based reasoning approach
por: Fernandes, Bruno
Publicado em: (2015)
por: Fernandes, Bruno
Publicado em: (2015)
groups The Georgia’s Cyberwar
por: Rios, Maria José
Publicado em: (2009)
por: Rios, Maria José
Publicado em: (2009)
article Challenges and reflections in designing Cyber security curriculum
por: Pereira, Teresa
Publicado em: (2017)
por: Pereira, Teresa
Publicado em: (2017)
article Voice based authentication using the null frequencies
por: Magalhães, Paulo Sérgio Tenreiro
Publicado em: (2008)
por: Magalhães, Paulo Sérgio Tenreiro
Publicado em: (2008)
Registos relacionados
-
article Information technologies and cyber security
por: Orvalho, Luísa
Publicado em: (2023) -
article Information systems security policies : a survey in portuguese public administration
por: Lopes, Isabel Maria
Publicado em: (2010) -
article Information security policies: a content analysis
por: Lopes, Isabel Maria
Publicado em: (2012) -
school Information systems security outsourcing key issues: a service providers’ perspective
por: Pereira, Luís Filipe Xavier
Publicado em: (2011) -
article Information systems security outsourcing key issues: a service providers' perspective
por: Pereira, Luís
Publicado em: (2012)