首页> 外文会议>International Conference on Information Technology Systems and Innovation >Digital security reference model: a survey and proposal
【24h】

Digital security reference model: a survey and proposal

机译:数字安全参考模型:调查和建议

获取原文

摘要

This paper presents a survey and proposal of a digital security reference model. The proposed reference model consists of three layers: technology and engineering layer, management layer, and legal layer. The first layer focuses on technologies and engineering processes to build a secure digital system. Then, the second layer is all about management or organizational procedures. Finally, the last layer consists of compliance with existing laws and regulations. The correlation between each layer is, first, focusing on the technology and engineering layer to get anything to build an organization’s secure digital system. Then, create policies for all parties of the organizations. Last, make sure all of the technology used and procedures applied complied with the existing law. The last layer also has a role as if security breach success penetrates the two previous layers. The next is digital forensics to reveal the cyber incident and punish the criminals by the existing law. In general, this proposed reference model aims to guide organizations, companies, and governments in developing a secure digital system with a comprehensive perspective. In particular, the reference model has two use case actors, engineers, and researchers. For the engineer, this reference model guides to starting and developing a digital security system. There are five steps to creating a secure digital system using this reference model: preparation, specifications, system design, implementation, and evaluation. For the researcher, this reference model gives a comprehensive understanding. So the researcher gets a big picture of the secure digital system’s research field before starting the research. After it, the researcher determines which topic they want.
机译:本文提出了一种数字安全参考模型的调查和建议。所提出的参考模型包括三层:技术和工程层,管理层和法律层。第一层侧重于构建安全数字系统的技术和工程流程。然后,第二层全部涉及管理或组织过程。最后,最后一层包括对现有法律法规的遵守。首先,各层之间的相关性着眼于技术和工程层,以获取构建组织的安全数字系统所需的一切。然后,为组织的所有各方创建策略。最后,请确保所使用的所有技术和应用的程序均符合现行法律。最后一层还扮演着安全突破成功渗透到前两层的角色。其次是数字取证,以揭示网络事件并通过现有法律惩罚罪犯。通常,此提议的参考模型旨在指导组织,公司和政府以全面的视角开发安全的数字系统。特别是,参考模型有两个用例参与者,工程师和研究人员。对于工程师来说,此参考模型指导着启动和开发数字安全系统。使用此参考模型创建安全的数字系统需要五个步骤:准备,规格,系统设计,实施和评估。对于研究人员,此参考模型提供了全面的了解。因此,在开始研究之前,研究人员可以全面了解安全数字系统的研究领域。之后,研究人员确定他们想要哪个主题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号