000 04381nam a22005415i 4500
001 978-0-387-36584-8
003 DE-He213
005 20250710083956.0
007 cr nn 008mamaa
008 100301s2006 xxu| s |||| 0|eng d
020 _a9780387365848
_a99780387365848
024 7 _a10.1007/978-0-387-36584-8
_2doi
082 0 4 _a005.74
_223
100 1 _aGollmann, Dieter.
_eeditor.
245 1 0 _aQuality of Protection
_h[recurso electrónico] :
_bSecurity Measurements and Metrics /
_cedited by Dieter Gollmann, Fabio Massacci, Artsiom Yautsiukhin.
264 1 _aBoston, MA :
_bSpringer US,
_c2006.
300 _aXI, 197 p.
_bonline resource.
336 _atext
_btxt
_2rdacontent
337 _acomputer
_bc
_2rdamedia
338 _arecurso en línea
_bcr
_2rdacarrier
347 _atext file
_bPDF
_2rda
490 1 _aAdvances in Information Security,
_x1568-2633 ;
_v23
505 0 _aMotivations -- Why to adopt a security metric? A brief survey -- Service-oriented Assurance - Comprehensive Security by Explicit Assurances -- Measurements: Reliability vs Security -- Software Security Growth Modeling: Examining Vulnerabilities with Reliability Growth Models -- A Discrete Lognormal Model for Software Defects Affecting Quality of Protection -- Time-to-Compromise Model for Cyber Risk Reduction Estimation -- Assessing the risk of using vulnerable components -- Collection and analysis of attack data based on honeypots deployed on the Internet -- Quantitative Security Models -- Multilevel Security and Quality of Protection -- A Conceptual Model for Service Availability -- A SLA evaluation methodology in Service Oriented Architectures -- Towards a Notion of Quantitative Security Analysis -- Metrics for Anonymity and Confidentiality -- The Lower Bound of Attacks on Anonymity Systems - A Unicity Distance Approach -- Intersection Attacks on Web-Mixes: Bringing the Theory into Praxis -- Using Guesswork as a Measure for Confidentiality of Selectively Encrypted Messages -- Measuring Inference Exposure in Outsourced Encrypted Databases.
520 _aInformation security in the business setting has matured in the last few decades. Standards, such as IS017799, the Common Criteria's, and a number of industry and academic certifications and risk analysis methodologies, have raised the bar on what is considered good security solution, from a business perspective. Yet, the evaluation of security solutions has largely a qualitative flavor. Notions such as Security Metrics, Quality of Protection (QoP) or Protection Level Agreement (PLA) have only surfaced in the literature. Quality of Protection: Security Measurements and Metrics is an edited volume based on the Quality of Protection Workshop at ESORICS 2005, the flagship European Symposium on Research in Computer Security. This book discusses how security research can progress towards a notion of quality of protection in security, comparable to the notion of quality of service in networking and software measurements and metrics, in empirical software engineering. Quality of Protection: Security Measurements and Metrics is designed for a professional audience, composed of researchers and practitioners in industry. This book is also suitable for graduate-level students in computer science and telecommunications.
650 0 _aCOMPUTER SCIENCE.
650 0 _aCOMPUTER COMMUNICATION NETWORKS.
650 0 _aSOFTWARE ENGINEERING.
650 0 _aDATA STRUCTURES (COMPUTER SCIENCE).
650 0 _aDATA ENCRYPTION (COMPUTER SCIENCE).
650 0 _aDATABASE MANAGEMENT.
650 1 4 _aCOMPUTER SCIENCE.
650 2 4 _aDATA STRUCTURES, CRYPTOLOGY AND INFORMATION THEORY.
650 2 4 _aDATA ENCRYPTION.
650 2 4 _aCOMPUTER COMMUNICATION NETWORKS.
650 2 4 _aDATABASE MANAGEMENT.
650 2 4 _aSOFTWARE ENGINEERING/PROGRAMMING AND OPERATING SYSTEMS.
650 2 4 _aPROCESSOR ARCHITECTURES.
700 1 _aMassacci, Fabio.
_eeditor.
700 1 _aYautsiukhin, Artsiom.
_eeditor.
710 2 _aSpringerLink (Online service)
773 0 _tSpringer eBooks
776 0 8 _iPrinted edition:
_z9780387290164
830 0 _aAdvances in Information Security,
_x1568-2633 ;
_v23
856 4 0 _uhttp://dx.doi.org/10.1007/978-0-387-36584-8
_zVer el texto completo en las instalaciones del CICY
912 _aZDB-2-SCS
942 _2ddc
_cER
999 _c57507
_d57507