ACMSIGUCCS

Spring 2010 Management Symposium

April 19-21, 2010 | Victoria, British Columbia

Innovation: Options, Implementations, and
Technical Solutions

 

 

View full Program Schedule

Fairmont Empress

Session: Innovation: Options, Implementations, and Technical Solutions

Speakers:
Vijay Anand, Illinois Institute of Technology
Jafar Saniie, Illinois Institute of Technology
Erdal Oruklu, Illinois Institute of Technology

Title: Security Policy Management Process within Six Sigma Framework

A measure of trust in a computing service is quantified by the security guarantees of the security goals of the service. These security guarantees, based on known and modeled threats, shape the security policies for a computing service. As threats evolve, the need for adaptive security policies for services in the computing system is necessary to counteract against the threats in real-time. Security policy management process needs to account for the diversity of hardware and software as computing systems are a blend of hardware and software resources harnessed via the computing services. Therefore, this paper presents a management process for creating adaptive real-time security policies modeled on evolving threats on the services which are provided by a secure computing system. A key challenge for the creation of a new management process is integrating this process to known industrial process models. One such industrial process model is Six-Sigma which is a business process management model for creating efficient systems wherein customer centric needs within the perspective of business data are widely adopted by both software and hardware companies. Therefore, the security policy management process presented in this paper is based on the Six Sigma model. The Six-Sigma framework i) Defines and quantifies security goals of digital assets ii) Measures and assesses threats and quantifies risk for those assets iii) Analyzes overall security goals keeping in context of the diversity of external and internal factors affecting the management of the computing service iv) Improves the system with optimization of security policies with evolving threats, and v) Controls the security policy implementation to guarantee the quality service for gaining customer trust.

IT - A Beacon for Innovation and Growth

Join us in Victoria
for the 2010 Symposium

2010 SIGUCCS Management Symposium

Join us in Victoria, British Columbia, Canada for the 2010 ACM SIGUCCS Spring Management Symposium. Join with IT leaders from small to large institutions to focus on a broad range of ideas, viewpoints, challenges, and solutions.

Symposium Events

Exciting trip to the Butchart Gardens

Please join us for an exciting post symposium trip to the Butchart Gardens the afternoon of Wednesday, April 21, 2009. Each ticket costs $24 and must be ordered by April 9th. Note: The tickets are valid any time during your stay.

Victoria, BC Promotional Video

Enjoy the general promotional video, highlighting some of the wonderful things you can see and do during your stay in Victoria, BC.