Research On Technology For It System Security Assessment Based On Markov Chain

Li Hetian,Liu Yun,He Dequan
DOI: https://doi.org/10.1109/ICOSP.2006.345964
2006-01-01
Abstract:Risk assessment as one of the core technologies ensures IT system security. In this paper, the existing risk evaluation methods are briefly reviewed and analyzed. A Markov chain based model is presented to quantitatively evaluate security. Firstly, a model based on Markov chain is constructed to describe IT system behavior. Secondly, a Markov transition matrix is founded to quantitatively assess security risk factors. Finally, the proposed risk assessment methodology is applied on the Internet ticketing system to calculate the risk value for the system. The experiment shows this method is effective and efficient and can be used to quantify the security properties for IT system in practice.
What problem does this paper attempt to address?