Method of Grouping Subjects and Objects in Information Systems
The paper considers the problem of dividing users and information systems into groups in organizations of an arbitrary scale. Modern methods do not consider specifics of the organization, business priorities and actual attacking techniques. Two feature sets for subjects and information systems are p...
Guardado en:
Autores principales: | , |
---|---|
Formato: | article |
Lenguaje: | EN |
Publicado: |
FRUCT
2021
|
Materias: | |
Acceso en línea: | https://doaj.org/article/90744cf9854940d5b0d5083388b2f064 |
Etiquetas: |
Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
|
id |
oai:doaj.org-article:90744cf9854940d5b0d5083388b2f064 |
---|---|
record_format |
dspace |
spelling |
oai:doaj.org-article:90744cf9854940d5b0d5083388b2f0642021-11-20T15:59:33ZMethod of Grouping Subjects and Objects in Information Systems2305-72542343-073710.23919/FRUCT53335.2021.9599989https://doaj.org/article/90744cf9854940d5b0d5083388b2f0642021-10-01T00:00:00Zhttps://www.fruct.org/publications/fruct30/files/Bon.pdfhttps://doaj.org/toc/2305-7254https://doaj.org/toc/2343-0737The paper considers the problem of dividing users and information systems into groups in organizations of an arbitrary scale. Modern methods do not consider specifics of the organization, business priorities and actual attacking techniques. Two feature sets for subjects and information systems are presented. The features are selected by analysis of dispersion, correlation coefficients and linear regression models built on pairs of features. An evaluation of clustering algorithms applicability to the problem of dividing users and information systems into groups is performed. An algorithm applying the results to real world organizations is constructed. The output of the algorithm can be used for network information security evaluation, access rights management and for designing requirements for network segmentation.Anastasiya BondarevaIlya ShilovFRUCTarticleinformation securityaccess objectsaccess subjectsclusteringaccess controlinformation systemssegmentationinformation infrastructureTelecommunicationTK5101-6720ENProceedings of the XXth Conference of Open Innovations Association FRUCT, Vol 30, Iss 1, Pp 10-15 (2021) |
institution |
DOAJ |
collection |
DOAJ |
language |
EN |
topic |
information security access objects access subjects clustering access control information systems segmentation information infrastructure Telecommunication TK5101-6720 |
spellingShingle |
information security access objects access subjects clustering access control information systems segmentation information infrastructure Telecommunication TK5101-6720 Anastasiya Bondareva Ilya Shilov Method of Grouping Subjects and Objects in Information Systems |
description |
The paper considers the problem of dividing users and information systems into groups in organizations of an arbitrary scale. Modern methods do not consider specifics of the organization, business priorities and actual attacking techniques. Two feature sets for subjects and information systems are presented. The features are selected by analysis of dispersion, correlation coefficients and linear regression models built on pairs of features. An evaluation of clustering algorithms applicability to the problem of dividing users and information systems into groups is performed. An algorithm applying the results to real world organizations is constructed. The output of the algorithm can be used for network information security evaluation, access rights management and for designing requirements for network segmentation. |
format |
article |
author |
Anastasiya Bondareva Ilya Shilov |
author_facet |
Anastasiya Bondareva Ilya Shilov |
author_sort |
Anastasiya Bondareva |
title |
Method of Grouping Subjects and Objects in Information Systems |
title_short |
Method of Grouping Subjects and Objects in Information Systems |
title_full |
Method of Grouping Subjects and Objects in Information Systems |
title_fullStr |
Method of Grouping Subjects and Objects in Information Systems |
title_full_unstemmed |
Method of Grouping Subjects and Objects in Information Systems |
title_sort |
method of grouping subjects and objects in information systems |
publisher |
FRUCT |
publishDate |
2021 |
url |
https://doaj.org/article/90744cf9854940d5b0d5083388b2f064 |
work_keys_str_mv |
AT anastasiyabondareva methodofgroupingsubjectsandobjectsininformationsystems AT ilyashilov methodofgroupingsubjectsandobjectsininformationsystems |
_version_ |
1718419437628948480 |