<  Retour au portail Polytechnique Montréal

System health monitoring using a novel method : security unified process

Alireza Shameli-Sendi, Masoume Jabbarifar, Michel Dagenais et Mehdi Shajari

Article de revue (2012)

Document en libre accès dans PolyPublie et chez l'éditeur officiel
[img]
Affichage préliminaire
Libre accès au plein texte de ce document
Version officielle de l'éditeur
Conditions d'utilisation: Creative Commons: Attribution (CC BY)
Télécharger (750kB)
Afficher le résumé
Cacher le résumé

Abstract

Iterative and incremental mechanisms are not usually considered in existing approaches for information security management System (ISMS). In this paper, we propose SUP (security unified process) as a unified process to implement a successful and highquality ISMS. A disciplined approach can be provided by SUP to assign tasks and responsibilities within an organization. The SUP architecture comprises static and dynamic dimensions; the static dimension, or disciplines, includes business modeling, assets, security policy, implementation, configuration and change management, and project management. The dynamic dimension, or phases, contains inception, analysis and design, construction, and monitoring. Risk assessment is a major part of the ISMS process. In SUP, we present a risk assessment model, which uses a fuzzy expert system to assess risks in organization. Since, the classification of assets is an important aspect of risk management and ensures that effective protection occurs, a Security Cube is proposed to identify organization assets as an asset classification model. The proposed model leads us to have an offline system health monitoring tool that is really a critical need in any organization.

Sujet(s): 2700 Technologie de l'information > 2700 Technologie de l'information
Département: Département de génie informatique et génie logiciel
Organismes subventionnaires: CRSNG/NSERC, Defense Research and Development Canada (DRDC), Ericsson Software Research
URL de PolyPublie: https://publications.polymtl.ca/3644/
Titre de la revue: Journal of Computer Networks and Communications (vol. 2012)
Maison d'édition: Hindawi
DOI: 10.1155/2012/151205
URL officielle: https://doi.org/10.1155/2012/151205
Date du dépôt: 30 avr. 2019 12:43
Dernière modification: 06 avr. 2024 11:32
Citer en APA 7: Shameli-Sendi, A., Jabbarifar, M., Dagenais, M., & Shajari, M. (2012). System health monitoring using a novel method : security unified process. Journal of Computer Networks and Communications, 2012, 1-20. https://doi.org/10.1155/2012/151205

Statistiques

Total des téléchargements à partir de PolyPublie

Téléchargements par année

Provenance des téléchargements

Dimensions

Actions réservées au personnel

Afficher document Afficher document