Title :
Deployment of a Security Assurance Monitoring Framework for Telecommunication Service Infrastructures on a VoIP Service
Author :
Ouedraogo, Moussa ; Khadraoui, Djamel ; Rémont, Benoît De ; Dubois, Eric ; Mouratidis, Haralambos
Author_Institution :
Public Res. Center Henri Tudor
Abstract :
In today´s world, where most of the critical infrastructures are based on distributed systems, security failures have become very common, even within large corporations. A system with security loopholes can be damaging for companies, both in terms of reputation and finances, while customers are reluctant to use such systems. In that respect, providing stakeholders with quantifiable evidences that the countermeasures deployed on the system are operating adequately is an important step towards better control of security failures for network administrators on one hand, and an increase in end users´ trust in using these systems on the other. It is in that perspective that BUGYO, a methodology to assess the security of telecommunication networks and services in terms of assurance levels, was proposed to address the shortcomings of existing security assurance and risks management methodologies in measuring, documenting and maintaining security assurance of telecommunication services. In this paper, we provide an overview of the BUGYO methodology and we demonstrate its applicability (mainly with respect to the specification of assurance metrics) on a VoIP service infrastructure based on open source components.
Keywords :
Internet telephony; open systems; telecommunication network management; telecommunication security; BUGYO methodology; VoIP service; distributed systems; network administrators; open infrastructures; open source component; security assurance monitoring framework deployment; telecommunication network security; telecommunication service infrastructures; Computer security; Condition monitoring; IEC standards; ISO standards; Informatics; Information security; Measurement standards; Risk management; Taxonomy; Telecommunication services;
Conference_Titel :
New Technologies, Mobility and Security, 2008. NTMS '08.
Conference_Location :
Tangier
Print_ISBN :
978-1-42443547-0
DOI :
10.1109/NTMS.2008.ECP.38