

기반 구조

Infrastructure Advisory for Information Security




The organization trying to manage information security manually or automatically. The preliminary task is to first understand and identifying the security requirements, which generally includes everything starting from hardware, software and information assets, threats and vulnerabilities associated with them, different network connections and topologies used for transferring information to and from the enterprise.
Security infrastructure advisory is a specified set of entities, both physical as well as software, in order to implement the set of identified controls. It tells an individual/organization the details regarding the security tools and the exact location of security tools, required to mitigate the security risks of the organization. In this phase, the security infrastructure advisories for different assets and platforms are generated. After getting the security infrastructure specification, the organization decides on the particular
infrastructure that it would like to implement.


 1. Introduction
  1.1 Enterprise Information Security Management (EISM)
 2. Previous Work
  2.1 A web services based approach to EISM
 3. Our Work
  3.1 Identification and Classification of Resources, Threats and Vulnerabilities
  3.2 Identification of different security tools and their features:
  3.3 Concepts of Location Based Advisory:
  3.4 Developing Location Based Advisory
  3.5 Guideline to Place Those Tools:
  3.6 Sequence Diagram for Special Category Tools
  3.7 Sequence Diagram for General Category Tools


  • Debnath Bhattacharyya Computer Science and Engineering Heritage Institute of Technology Kolkata, India
  • Uttam Kumar Dash Computer Science and Engineering Heritage Institute of Technology Kolkata, India
  • Tai‐shoon Kim Professor, Department of Multimedia Engineering , Hannam University, 306-791.


자료제공 : 네이버학술정보

    함께 이용한 논문

      ※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

      0개의 논문이 장바구니에 담겼습니다.