Modelirovanie i Analiz Informatsionnykh Sistem
RUS  ENG    JOURNALS   PEOPLE   ORGANISATIONS   CONFERENCES   SEMINARS   VIDEO LIBRARY   PACKAGE AMSBIB  
General information
Latest issue
Archive
Impact factor

Search papers
Search references

RSS
Latest issue
Current issues
Archive issues
What is RSS



Model. Anal. Inform. Sist.:
Year:
Volume:
Issue:
Page:
Find






Personal entry:
Login:
Password:
Save password
Enter
Forgotten password?
Register


Modelirovanie i Analiz Informatsionnykh Sistem, 2020, Volume 27, Number 1, Pages 108–123
DOI: https://doi.org/10.18255/1818-1015-2020-1-108-123
(Mi mais707)
 

This article is cited in 1 scientific paper (total in 1 paper)

Discrete mathematics in relation to computer science

A Markov model of non-mutually exclusive cyber threats and its applications for selecting an optimal set of information security remedies

A. A. Kassenov, A. A. Magazev, V. F. Tsyrulnik

Omsk State Technical University, 11 Mira pr., Omsk, 644050 Russia
Full-text PDF (735 kB) Citations (1)
References:
Abstract: In this work, we study a Markov model of cyber threats that act on a computer system. Within the framework of the model the computer system is considered as a system with failures and recoveries by analogy with models of reliability theory. To estimate functionally-temporal properties of the system we introduce a parameter called the lifetime of the system and defined as the number of transitions of the corresponding Markov chain until the first hit to the final state. Since this random variable plays an important role at evaluating a security level of the computer system, we investigate in detail its random distribution for the case of mutually exclusive cyber threats; in particular, we derive explicit analytical formulae for numerical characteristics of its distribution: expected value and dispersion. Then we generalize substantially the Markov model dropping the assumption that cyber threats acting on the system are mutually exclusive. This modification leads to an extended Markov chain that has (at least qualitatively) the same structure as the original chain. This fact allowed to generalize the above analytical results for the expected value and dispersion of the lifetime to the case of non-mutually exclusive cyber threats. At the end of the work the Markov model for non-mutually exclusive cyber threats is used to state a problem of finding an optimal configuration of security remedies in a given cyber threat space. It is essential that the formulated optimization problems belong to the class of non-linear discrete (Boolean) programming problems. Finally, we consider an example that illustrate the solution of the problem on selecting the optimal set of security remedies for a computer system.
Keywords: cyber threat, Markov chain, security remedy, optimization.
Funding agency Grant number
Russian Foundation for Basic Research 19-37-90122
The reported study was funded by RFBR, project number 19-37-90122.
Received: 27.10.2019
Revised: 20.02.2020
Accepted: 28.02.2020
Document Type: Article
UDC: 51-74, 004.942
MSC: 68M25
Language: Russian
Citation: A. A. Kassenov, A. A. Magazev, V. F. Tsyrulnik, “A Markov model of non-mutually exclusive cyber threats and its applications for selecting an optimal set of information security remedies”, Model. Anal. Inform. Sist., 27:1 (2020), 108–123
Citation in format AMSBIB
\Bibitem{KasMagTsy20}
\by A.~A.~Kassenov, A.~A.~Magazev, V.~F.~Tsyrulnik
\paper A Markov model of non-mutually exclusive cyber threats and its applications for selecting an optimal set of information security remedies
\jour Model. Anal. Inform. Sist.
\yr 2020
\vol 27
\issue 1
\pages 108--123
\mathnet{http://mi.mathnet.ru/mais707}
\crossref{https://doi.org/10.18255/1818-1015-2020-1-108-123}
Linking options:
  • https://www.mathnet.ru/eng/mais707
  • https://www.mathnet.ru/eng/mais/v27/i1/p108
  • This publication is cited in the following 1 articles:
    Citing articles in Google Scholar: Russian citations, English citations
    Related articles in Google Scholar: Russian articles, English articles
    Моделирование и анализ информационных систем
    Statistics & downloads:
    Abstract page:181
    Full-text PDF :60
    References:28
     
      Contact us:
     Terms of Use  Registration to the website  Logotypes © Steklov Mathematical Institute RAS, 2024