Insider Threat Modeling: An Adversarial Risk Analysis Approach

Chaitanya Joshi,Jesus Rios Aliaga,David Rios Insua
DOI: https://doi.org/10.1109/tifs.2020.3029898
IF: 7.231
2021-01-01
IEEE Transactions on Information Forensics and Security
Abstract:Insider threats entail major security issues in many organizations. Game theoretic models of insider threats so far proposed do not take into account important factors such as the organizational culture and whether the attacker was detected or not. They also fail to model defensive mechanisms already put in place by an organization to mitigate insider attacks. We propose two new models which incorporate these settings and, hence, are more realistic, and use adversarial risk analysis to find their solutions. Our models and solutions are general and can be applied to most insider threat scenarios. A data security example illustrates the discussion.
computer science, theory & methods,engineering, electrical & electronic
What problem does this paper attempt to address?