RMIT University
Browse

Composite Metrics for Network Security Analysis

journal contribution
posted on 2024-11-02, 17:32 authored by Simon Enoch, Jin-Bum Hong, Mengmeng Ge, Dong Seong Kim
Security metrics present the security level of a system or a network in both qualitative and quantitative ways. In general, security metrics are used to assess the security level of a system and to achieve security goals. There are a lot of security metrics for security analysis, but there is no systematic classification of security metrics that are based on network reachability information. To address this, we propose a systematic classification of existing security metrics based on network reachability information. Mainly, we classify the security metrics into host-based and network-based metrics. The host-based metrics are classified into metrics ``without probability" and "with probability", while the network-based metrics are classified into "path-based" and "non-path based". Finally, we present and describe an approach to develop composite security metrics and it's calculations using a Hierarchical Attack Representation Model (HARM) via an example network. Our novel classification of security metrics provides a new methodology to assess the security of a system.

History

Related Materials

  1. 1.
    DOI - Is published in 10.13052/jsn2445-9739.2017.007
  2. 2.
    ISSN - Is published in 24459739

Journal

Software Networking

Volume

2017

Number

7

Issue

1

Start page

137

End page

160

Total pages

24

Publisher

River Publishers

Place published

Denmark

Language

English

Copyright

© 2018 All Open Access articles are published and distributed under the Creative Commons Attribution-Non Commercial 4.0 International (CC BY-NC 4.0).

Former Identifier

2006110118

Esploro creation date

2021-09-30

Usage metrics

    Scholarly Works

    Licence

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC