Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr....

24
The University of Texas at Dallas

Transcript of Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr....

Page 1: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

The University of Texas at Dallas

Page 2: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.
Page 3: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

3

ooo

“”

o

o

Page 4: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

4

Oct. 2010

Dec. 2004 Sep. 2006

Oct. 2008

Page 5: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

5

Relaxing of PCI-DSS standard

oo“”

Page 6: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

6

Page 7: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

7

“”

Page 8: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

8

oo

oo

Page 9: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

9

Introduction – A research on security standardization that highlights unverifiable controls and liability reduction effect

Page 10: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

10

Page 11: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.
Page 12: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

12

••

••

••

••

••

••

••

••’

••

••

••’

••

•’••

•’••

Page 13: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.
Page 14: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

( , ) 1V N V Ne e e e

( , ) (1 )(1 )V N V Ne e e e

( , ) 1 min( , )V N V Ne e e e

Page 15: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

o

’o

( , ) ( ) ( )SW SW V N SW V V N NU V e e D C e C e

( , )(1 ) ( ) ( )F F V N V F V V N NU V e e ke D C e C e

Page 16: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.
Page 17: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.
Page 18: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

18

Page 19: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

19

Page 20: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

20

’’

’’

Page 21: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

21

Page 22: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

22

ooo

Page 23: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

23

Ws s

Ws s

Page 24: Security Standardization in the Presence of Unverifiable Control Chul Ho Lee With Dr. Geng and Dr. Raghunathan 2011. 6.15 The University of Texas at Dallas.

24