Insider Risk Control Validation

Abstract

Technical Control Validation: What's Needed: Simulated infrastructure, Open-source tools such as GreyBox and TopGen. Infrastructure-as-code tools including Terraform, Ansible, and Packer facilitate reuse and automation. Simulated user activity, Open-source tools such as GHOSTS. Realism, Base rates of occurrence, Incident data.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Jan 01, 2021
Accession Number
AD1150263

Entities

People

  • Dan Costa

Organizations

  • Carnegie Mellon University

Tags

DTIC Thesaurus Topics

  • Commerce
  • Critical Path Methods
  • Department Of Defense
  • Engineering
  • Governments
  • Guarantees
  • Infrastructure
  • Insider Threats
  • Intellectual Property
  • Materials
  • Patents
  • Risk
  • Risk Analysis
  • Social Networks
  • Software Development
  • Threats
  • Universities
  • Validation

Fields of Study

  • Computer science

Readers

  • Cybersecurity.
  • Human-Computer Interaction (HCI).
  • Software Engineering.