2017
DOI: 10.1007/978-3-319-69035-3_5
|View full text |Cite
|
Sign up to set email alerts
|

Cloud Certification Process Validation Using Formal Methods

Abstract: Abstract. The importance of cloud-based systems is increasing constantly as they become crucial for completing tasks in an effective and affordable manner. Yet, their use is affected by concerns about the security of the data and applications provisioned through them. Security certification provides a means of increasing confidence in such systems, by establishing that they fulfil certain security properties of interest. Certification processes involve security property assessments against specific threat mode… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1

Citation Types

0
3
0

Year Published

2019
2019
2020
2020

Publication Types

Select...
1
1

Relationship

1
1

Authors

Journals

citations
Cited by 2 publications
(3 citation statements)
references
References 13 publications
0
3
0
Order By: Relevance
“…This section describes the deployment infrastructure of CyberSure. It consists of four core components: i) the risk assessment tools (RIS 3 and NESSOS 4 ), ii) the certification tool (CUMULUS [21], [22]), iii) the insurance tool (HDI 5 ), and iv) the pilot systems (cloud and e-health platforms). The various components of the CyberSure platform are installed in the relevant host companies with on-line monitoring controls being deployed on the two pilot systems of the ICT provider and the healthcare organization, respectively.…”
Section: The Cybersure Platformmentioning
confidence: 99%
See 2 more Smart Citations
“…This section describes the deployment infrastructure of CyberSure. It consists of four core components: i) the risk assessment tools (RIS 3 and NESSOS 4 ), ii) the certification tool (CUMULUS [21], [22]), iii) the insurance tool (HDI 5 ), and iv) the pilot systems (cloud and e-health platforms). The various components of the CyberSure platform are installed in the relevant host companies with on-line monitoring controls being deployed on the two pilot systems of the ICT provider and the healthcare organization, respectively.…”
Section: The Cybersure Platformmentioning
confidence: 99%
“…They deploy CUMULUS certification models (e.g. [21], [22]) for this purpose and, based on automated (or semi-automated) certification carried out using them, they develop ways of dynamically adjusting risk estimates, insurance policies and premiums. In particular, the framework considers the case of dynamic certification, based on continuous monitoring, dynamic testing and hybrid combinations of them, adaptation of cyber insurance policies as the conditions of the cyber system operation evolve and new data become available, as well as fine-tuning and adjusting the risk associated to the insurance policies.…”
Section: B Certification Processmentioning
confidence: 99%
See 1 more Smart Citation