Method of Grouping Subjects and Objects in Information Systems

The paper considers the problem of dividing users and information systems into groups in organizations of an arbitrary scale. Modern methods do not consider specifics of the organization, business priorities and actual attacking techniques. Two feature sets for subjects and information systems are p...

Descripción completa

Guardado en:
Detalles Bibliográficos
Autores principales: Anastasiya Bondareva, Ilya Shilov
Formato: article
Lenguaje:EN
Publicado: FRUCT 2021
Materias:
Acceso en línea:https://doaj.org/article/90744cf9854940d5b0d5083388b2f064
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
id oai:doaj.org-article:90744cf9854940d5b0d5083388b2f064
record_format dspace
spelling oai:doaj.org-article:90744cf9854940d5b0d5083388b2f0642021-11-20T15:59:33ZMethod of Grouping Subjects and Objects in Information Systems2305-72542343-073710.23919/FRUCT53335.2021.9599989https://doaj.org/article/90744cf9854940d5b0d5083388b2f0642021-10-01T00:00:00Zhttps://www.fruct.org/publications/fruct30/files/Bon.pdfhttps://doaj.org/toc/2305-7254https://doaj.org/toc/2343-0737The paper considers the problem of dividing users and information systems into groups in organizations of an arbitrary scale. Modern methods do not consider specifics of the organization, business priorities and actual attacking techniques. Two feature sets for subjects and information systems are presented. The features are selected by analysis of dispersion, correlation coefficients and linear regression models built on pairs of features. An evaluation of clustering algorithms applicability to the problem of dividing users and information systems into groups is performed. An algorithm applying the results to real world organizations is constructed. The output of the algorithm can be used for network information security evaluation, access rights management and for designing requirements for network segmentation.Anastasiya BondarevaIlya ShilovFRUCTarticleinformation securityaccess objectsaccess subjectsclusteringaccess controlinformation systemssegmentationinformation infrastructureTelecommunicationTK5101-6720ENProceedings of the XXth Conference of Open Innovations Association FRUCT, Vol 30, Iss 1, Pp 10-15 (2021)
institution DOAJ
collection DOAJ
language EN
topic information security
access objects
access subjects
clustering
access control
information systems
segmentation
information infrastructure
Telecommunication
TK5101-6720
spellingShingle information security
access objects
access subjects
clustering
access control
information systems
segmentation
information infrastructure
Telecommunication
TK5101-6720
Anastasiya Bondareva
Ilya Shilov
Method of Grouping Subjects and Objects in Information Systems
description The paper considers the problem of dividing users and information systems into groups in organizations of an arbitrary scale. Modern methods do not consider specifics of the organization, business priorities and actual attacking techniques. Two feature sets for subjects and information systems are presented. The features are selected by analysis of dispersion, correlation coefficients and linear regression models built on pairs of features. An evaluation of clustering algorithms applicability to the problem of dividing users and information systems into groups is performed. An algorithm applying the results to real world organizations is constructed. The output of the algorithm can be used for network information security evaluation, access rights management and for designing requirements for network segmentation.
format article
author Anastasiya Bondareva
Ilya Shilov
author_facet Anastasiya Bondareva
Ilya Shilov
author_sort Anastasiya Bondareva
title Method of Grouping Subjects and Objects in Information Systems
title_short Method of Grouping Subjects and Objects in Information Systems
title_full Method of Grouping Subjects and Objects in Information Systems
title_fullStr Method of Grouping Subjects and Objects in Information Systems
title_full_unstemmed Method of Grouping Subjects and Objects in Information Systems
title_sort method of grouping subjects and objects in information systems
publisher FRUCT
publishDate 2021
url https://doaj.org/article/90744cf9854940d5b0d5083388b2f064
work_keys_str_mv AT anastasiyabondareva methodofgroupingsubjectsandobjectsininformationsystems
AT ilyashilov methodofgroupingsubjectsandobjectsininformationsystems
_version_ 1718419437628948480