DocumentCode :
3387037
Title :
Security Evaluation for Information Assurance
Author :
Kim, Yong-Tae ; Park, Gil-Cheol ; Kim, Tai-Hoon ; Lee, Sang-ho
Author_Institution :
Hannam Univ., Daejeon
fYear :
2007
fDate :
26-29 Aug. 2007
Firstpage :
227
Lastpage :
230
Abstract :
In general, threat agents´ primary goals may fall into three categories: unauthorized access, unauthorized modification or destruction of important information assets, and denial of authorized access. Security countermeasures are implemented to prevent threat agents from successfully achieving these goals. Because the general systems of today are composed of a number of components such as servers and clients, protocols, services, and so on, the possibility of success of attack may be increased. As though Systems connected to network have become more complex and wide, unfortunately, the researches for the systems are focused on the ´performance´ or ´efficiency´. While most of the attention in system security has been focused on encryption technology and protocols for securing the data transaction, it is critical to note that a weakness (or security hole) in any one of the components may comprise whole system. Security engineering is needed for reducing security holes may be included in the Information systems. This paper proposes a method for securing the Information systems by evaluation of security functions of system component. This paper proposes Information system security evaluation and certification for achieving some level of assurance each owners of their Information systems want to get.
Keywords :
authorisation; certification; information systems; encryption technology; information assurance; information system certification; information system security evaluation; protocol; unauthorized access; Certification; Computer applications; Data security; Electronic countermeasures; Information security; Information systems; Intrusion detection; Management information systems; National security; Protection;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computational Science and its Applications, 2007. ICCSA 2007. International Conference on
Conference_Location :
Kuala Lampur
Print_ISBN :
978-0-7695-2945-5
Type :
conf
DOI :
10.1109/ICCSA.2007.55
Filename :
4301148
Link To Document :
بازگشت