A Novel Detection and Prevention (DAP) Framework for Abuse of cloud service threat

I. Ahmad, H. Bakht
{"title":"A Novel Detection and Prevention (DAP) Framework for Abuse of cloud service threat","authors":"I. Ahmad, H. Bakht","doi":"10.12785/IJCNT/060302","DOIUrl":null,"url":null,"abstract":"Cloud security mitigation techniques has not reached the level of transparency and hence, the journey of understanding and accepting cloud computing services still remains uncharted for many organizations or individuals. While mitigation techniques for different security issues are actively being researched, however, there is still insignificancy in research on Abuse of Cloud Services threat, in particular. The threat has been identified as one of the top amongst nine by Cloud Security Alliance (CSA). The study proposes a Detection and Prevention (DAP) framework with fourteen major security measures for significant areas of concern in cloud business, operational and organizational. The key benefits of the framework are: it has improved the process of registration, resource allocation and asset inventory system. It has modeled an improvised human resource system for managing information processing facilities more efficiently, along with employee inventory system and malicious insider activity index. A universal cloud APIs process has been proposed to act as an integrator and decode service providers APIs to run business seamlessly. Furthermore, strategic plan for business continuity, disaster recovery and risk assessment processes have been proposed to define policies and procedures for running business during adverse circumstances. The security measures will be validated and evaluated with existing security infrastructure in cloud. The DAP framework is fully capable of providing better security preservation to the identified threat, which could be utilized for further development in cloud security infrastructure.","PeriodicalId":352753,"journal":{"name":"International Journal of Computing & Network Technology","volume":"46 7 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-09-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"International Journal of Computing & Network Technology","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.12785/IJCNT/060302","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

Abstract

Cloud security mitigation techniques has not reached the level of transparency and hence, the journey of understanding and accepting cloud computing services still remains uncharted for many organizations or individuals. While mitigation techniques for different security issues are actively being researched, however, there is still insignificancy in research on Abuse of Cloud Services threat, in particular. The threat has been identified as one of the top amongst nine by Cloud Security Alliance (CSA). The study proposes a Detection and Prevention (DAP) framework with fourteen major security measures for significant areas of concern in cloud business, operational and organizational. The key benefits of the framework are: it has improved the process of registration, resource allocation and asset inventory system. It has modeled an improvised human resource system for managing information processing facilities more efficiently, along with employee inventory system and malicious insider activity index. A universal cloud APIs process has been proposed to act as an integrator and decode service providers APIs to run business seamlessly. Furthermore, strategic plan for business continuity, disaster recovery and risk assessment processes have been proposed to define policies and procedures for running business during adverse circumstances. The security measures will be validated and evaluated with existing security infrastructure in cloud. The DAP framework is fully capable of providing better security preservation to the identified threat, which could be utilized for further development in cloud security infrastructure.
一种新的云服务威胁滥用检测与预防(DAP)框架
云安全缓解技术尚未达到透明度的水平,因此,对许多组织或个人来说,理解和接受云计算服务的过程仍然是未知的。然而,尽管人们正在积极研究各种安全问题的缓解技术,但对滥用云服务威胁的研究仍然微不足道。该威胁已被云安全联盟(CSA)确定为九大威胁之一。该研究提出了一个检测和预防(DAP)框架,其中包含14项主要安全措施,用于云业务、运营和组织的重要领域。该框架的主要好处是:改进了注册流程、资源配置和资产清查制度。为了更有效地管理信息处理设施,它建立了临时人力资源系统,并建立了员工库存系统和恶意内部活动指数。已经提出了一个通用的云api流程,作为一个集成商和解码服务提供商的api,以无缝地运行业务。此外,还提出了业务连续性、灾难恢复和风险评估过程战略计划,以确定在不利情况下经营业务的政策和程序。安全措施将在云中现有的安全基础设施中进行验证和评估。DAP框架完全有能力为已识别的威胁提供更好的安全保护,可以用于云安全基础设施的进一步开发。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信