首页 | 官方网站   微博 | 高级检索  
     


Resilience of Cyber Systems with Over‐ and Underregulation
Authors:Viktoria Gisladottir  Alexander A Ganin  Jeffrey M Keisler  Jeremy Kepner  Igor Linkov
Affiliation:1. U.S. Army Corps of Engineers – Engineer Research and Development Center, Environmental Laboratory, Concord, MA, USA;2. Department of Systems and Information Engineering, University of Virginia, Charlottesville, VA, USA;3. College of Management, University of Massachusetts Boston, Boston, MA, USA;4. MIT Lincoln Laboratory, Lexington, MA, USA
Abstract:Recent cyber attacks provide evidence of increased threats to our critical systems and infrastructure. A common reaction to a new threat is to harden the system by adding new rules and regulations. As federal and state governments request new procedures to follow, each of their organizations implements their own cyber defense strategies. This unintentionally increases time and effort that employees spend on training and policy implementation and decreases the time and latitude to perform critical job functions, thus raising overall levels of stress. People's performance under stress, coupled with an overabundance of information, results in even more vulnerabilities for adversaries to exploit. In this article, we embed a simple regulatory model that accounts for cybersecurity human factors and an organization's regulatory environment in a model of a corporate cyber network under attack. The resulting model demonstrates the effect of under‐ and overregulation on an organization's resilience with respect to insider threats. Currently, there is a tendency to use ad‐hoc approaches to account for human factors rather than to incorporate them into cyber resilience modeling. It is clear that using a systematic approach utilizing behavioral science, which already exists in cyber resilience assessment, would provide a more holistic view for decisionmakers.
Keywords:Cyber network  regulation  resilience
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号