Sciweavers

ICEGOV
2007
ACM

Formal threat descriptions for enhancing governmental risk assessment

13 years 8 months ago
Formal threat descriptions for enhancing governmental risk assessment
Compared to the last decades, we have recently seen more and more governmental applications which are provided via the Internet directly to the citizens. Due to the long history of IT systems in the governmental sector and the connection of these legacy systems to newer technologies, most governmental institutions are faced with a heterogeneous IT environment. More and more governmental duties and responsibilities rely solely on IT systems which have to be highly dependable to ensure the proper operation of these governmental services. An increasing amount of software vulnerabilities and the generally heightened physical threat level due to terror attacks and natural disasters demand for a holistic IT security approach which captures, manages, and secures the entire governmental IT infrastructure. Our contribution is (1) a novel inventory solution, (2) a mechanism to embed the virtual IT infrastructure data into a physical model provided by our security ontology, and (3) a methodology...
Andreas Ekelhart, Stefan Fenz, Thomas Neubauer, Ed
Added 16 Aug 2010
Updated 16 Aug 2010
Type Conference
Year 2007
Where ICEGOV
Authors Andreas Ekelhart, Stefan Fenz, Thomas Neubauer, Edgar Weippl
Comments (0)