SANS Technology Institute Students Publish Assignment on Security Metrics

SANS Technology Institute Students Publish Assignment on Security Metrics

<p>SANS Technology Institute Students Publish Assignment on Security Metrics</p><p>(Oct. 21, 2011) Two candidates of the SANS Technology Institute’s Masters of Information Security Engineering program published today a paper exploring the subject of Security Metrics. They explore the challenges of gathering and presenting security program effectiveness in a holistic, clear, and meaningful way. The research was the outcome of a month-long team effort aimed at applying the project management cycle and collaborating on an IT security problem.</p><p>Chris Cain, a security specialist from California, and Erik Couture, a military communications officer from Ottawa co-operated on the project, which was based on the development of a Security Metrics program for a medium sized corporation. They leveraged the industry- recognized SANS Top 20 Security Controls as the basis for the creation of a plan to measure and make sense of disparate security-related data.</p><p>Throughout the assignment, Cain engaged CIOs from several corporations, obtaining valuable insight on how senior management views security. Couture collaborated in developing a set of proposed metrics that aimed at providing C-Level executives a clear look at their organization’s security posture, and its changes over time. The key deliverable of the project was a security ‘dashboard’ which could, at a glance, give and executives a view on the effectiveness of their security program. This type of information, fused from firewall logs, human resources records, help desk tickets and several other sources, provides a holistic view on security, beyond a simple look and the number of intrusions or security policy breaches.</p><p>Their report may be found at http://www.sans.edu/research/student-projects. </p>

View Full Text

Details

  • File Type
    pdf
  • Upload Time
    -
  • Content Languages
    English
  • Upload User
    Anonymous/Not logged-in
  • File Pages
    1 Page
  • File Size
    -

Download

Channel Download Status
Express Download Enable

Copyright

We respect the copyrights and intellectual property rights of all users. All uploaded documents are either original works of the uploader or authorized works of the rightful owners.

  • Not to be reproduced or distributed without explicit permission.
  • Not used for commercial purposes outside of approved use cases.
  • Not used to infringe on the rights of the original creators.
  • If you believe any content infringes your copyright, please contact us immediately.

Support

For help with questions, suggestions, or problems, please contact us