Security Assessment Rating Framework for Enterprises using MITRE ATT CK Matrix

08/14/2021
by   Hardik Manocha, et al.
0

Threats targeting cyberspace are becoming more prominent and intelligent day by day. This inherently leads to a dire demand for continuous security validation and testing. Using this paper, we aim to provide a holistic and precise security analysis rating framework for organizations that increases the overall coherency of the outcomes of such testing. This scorecard is based on the security assessment performed following the globally accessible knowledge base of adversary tactics and techniques called the MITRE ATTACK matrix. The scorecard for an evaluation is generated by ingesting the security testing results into our framework, which provides an organizations overall risk assessment rating and the risk related to each of the different tactics from the ATTACK matrix.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/26/2019

Security Rating Metrics for Distributed Wireless Systems

The paper examines quantitative assessment of wireless distribution syst...
research
04/24/2019

Risky Business: Assessing Security with External Measurements

Security practices in large organizations are notoriously difficult to a...
research
03/11/2019

CloudSafe: A Tool for an Automated Security Analysis for Cloud Computing

Cloud computing has been adopted widely, providing on-demand computing r...
research
10/19/2021

Holistic Hardware Security Assessment Framework: A Microarchitectural Perspective

Our goal is to enable holistic hardware security evaluation from the mic...
research
02/22/2022

Wastewater Pipe Condition Rating Model Using K- Nearest Neighbors

Risk-based assessment in pipe condition mainly focuses on prioritizing t...
research
05/23/2020

ChirpOTLE: A Framework for Practical LoRaWAN Security Evaluation

Low-power wide-area networks (LPWANs) are becoming an integral part of t...
research
12/28/2021

State Compression and Quantitative Assessment Model for Assessing Security Risks in the Oil and Gas Transmission Systems

The SCADA system is the foundation of the large-scale industrial control...

Please sign up or login with your details

Forgot password? Click here to reset