Quantifying Computer Network Security

Simplifying network security data to the point that it is readily accessible and usable by a wider audience is increasingly becoming important, as networks become larger and security conditions and threats become more dynamic and complex, requiring a broader and more varied security staff makeup. Wi...

Full description

Bibliographic Details
Main Author: Burchett, Ian
Format: Others
Published: TopSCHOLAR® 2011
Subjects:
NVD
Online Access:http://digitalcommons.wku.edu/theses/1118
http://digitalcommons.wku.edu/cgi/viewcontent.cgi?article=2120&context=theses
id ndltd-WKU-oai-digitalcommons.wku.edu-theses-2120
record_format oai_dc
spelling ndltd-WKU-oai-digitalcommons.wku.edu-theses-21202013-01-08T18:59:17Z Quantifying Computer Network Security Burchett, Ian Simplifying network security data to the point that it is readily accessible and usable by a wider audience is increasingly becoming important, as networks become larger and security conditions and threats become more dynamic and complex, requiring a broader and more varied security staff makeup. With the need for a simple metric to quantify the security level on a network, this thesis proposes: simplify a network’s security risk level into a simple metric. Methods for this simplification of an entire network’s security level are conducted on several characteristic networks. Identification of computer network port vulnerabilities from NIST’s Network Vulnerability Database (NVD) are conducted, and via utilization of NVD’s Common Vulnerability Scoring System values, composite scores are created for each computer on the network, and then collectively a composite score is computed for the entire network, which accurately represents the health of the entire network. Special concerns about small numbers of highly vulnerable computers or especially critical members of the network are confronted. 2011-12-01 text application/pdf http://digitalcommons.wku.edu/theses/1118 http://digitalcommons.wku.edu/cgi/viewcontent.cgi?article=2120&context=theses Masters Theses & Specialist Projects TopSCHOLAR® computer networks NVD CVSS network security data security risk level Computer Sciences Databases and Information Systems OS and Networks
collection NDLTD
format Others
sources NDLTD
topic computer networks
NVD
CVSS
network security data
security risk level
Computer Sciences
Databases and Information Systems
OS and Networks
spellingShingle computer networks
NVD
CVSS
network security data
security risk level
Computer Sciences
Databases and Information Systems
OS and Networks
Burchett, Ian
Quantifying Computer Network Security
description Simplifying network security data to the point that it is readily accessible and usable by a wider audience is increasingly becoming important, as networks become larger and security conditions and threats become more dynamic and complex, requiring a broader and more varied security staff makeup. With the need for a simple metric to quantify the security level on a network, this thesis proposes: simplify a network’s security risk level into a simple metric. Methods for this simplification of an entire network’s security level are conducted on several characteristic networks. Identification of computer network port vulnerabilities from NIST’s Network Vulnerability Database (NVD) are conducted, and via utilization of NVD’s Common Vulnerability Scoring System values, composite scores are created for each computer on the network, and then collectively a composite score is computed for the entire network, which accurately represents the health of the entire network. Special concerns about small numbers of highly vulnerable computers or especially critical members of the network are confronted.
author Burchett, Ian
author_facet Burchett, Ian
author_sort Burchett, Ian
title Quantifying Computer Network Security
title_short Quantifying Computer Network Security
title_full Quantifying Computer Network Security
title_fullStr Quantifying Computer Network Security
title_full_unstemmed Quantifying Computer Network Security
title_sort quantifying computer network security
publisher TopSCHOLAR®
publishDate 2011
url http://digitalcommons.wku.edu/theses/1118
http://digitalcommons.wku.edu/cgi/viewcontent.cgi?article=2120&context=theses
work_keys_str_mv AT burchettian quantifyingcomputernetworksecurity
_version_ 1716574624892846080