MAPE-SAC: A Framework to Dynamically Manage Security Assurance Cases

Sharmin Jahan, M. Pasco, R. Gamble, P. McKinley, B. Cheng
{"title":"MAPE-SAC: A Framework to Dynamically Manage Security Assurance Cases","authors":"Sharmin Jahan, M. Pasco, R. Gamble, P. McKinley, B. Cheng","doi":"10.1109/FAS-W.2019.00045","DOIUrl":null,"url":null,"abstract":"Assuring security compliance in self-adaptive systems is challenging, notably as both functional and security conditions may change at run time, where adaptation of functional behavior may violate security requirements or vice versa. In traditional systems, certification is performed at design time on the mechanisms that will be deployed to guarantee the effectiveness of organizationally chosen and instantiated security controls defined by standards bodies (e.g., NIST SP800-53). In contrast, adaptive systems benefit by run-time adaptations for which dynamic certification could be difficult. Confidence in an information system's compliance with security constraints can be expressed using security assurance cases (SACs). Specifically, NIST security controls follow a repeated structure that make them amenable to their specification in terms of SACs. The collection of SACs for the related security controls form a network that can be used to assess the level of the system's compliance through certification-based evidence. Once the system is deployed, environmental and functional uncertainties may require more complex adaptations that include the coordination of functional and security adaptations. This paper introduces the MAPE-SAC control loop and its interaction with the MAPE-K control loop to dynamically manage run-time adaptations in response to changes in functional and security conditions. We illustrate the use of both control loops and their interaction using an example of an autonomous rover responding to a potential security incident.","PeriodicalId":368308,"journal":{"name":"2019 IEEE 4th International Workshops on Foundations and Applications of Self* Systems (FAS*W)","volume":"16 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-06-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2019 IEEE 4th International Workshops on Foundations and Applications of Self* Systems (FAS*W)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/FAS-W.2019.00045","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 5

Abstract

Assuring security compliance in self-adaptive systems is challenging, notably as both functional and security conditions may change at run time, where adaptation of functional behavior may violate security requirements or vice versa. In traditional systems, certification is performed at design time on the mechanisms that will be deployed to guarantee the effectiveness of organizationally chosen and instantiated security controls defined by standards bodies (e.g., NIST SP800-53). In contrast, adaptive systems benefit by run-time adaptations for which dynamic certification could be difficult. Confidence in an information system's compliance with security constraints can be expressed using security assurance cases (SACs). Specifically, NIST security controls follow a repeated structure that make them amenable to their specification in terms of SACs. The collection of SACs for the related security controls form a network that can be used to assess the level of the system's compliance through certification-based evidence. Once the system is deployed, environmental and functional uncertainties may require more complex adaptations that include the coordination of functional and security adaptations. This paper introduces the MAPE-SAC control loop and its interaction with the MAPE-K control loop to dynamically manage run-time adaptations in response to changes in functional and security conditions. We illustrate the use of both control loops and their interaction using an example of an autonomous rover responding to a potential security incident.
MAPE-SAC:一个动态管理安全保证案例的框架
在自适应系统中确保安全遵从性是一项挑战,特别是因为功能和安全条件都可能在运行时发生变化,其中功能行为的适应可能违反安全需求,反之亦然。在传统系统中,认证是在设计时对将要部署的机制进行的,以保证组织选择和由标准机构(例如,NIST SP800-53)定义的实例化安全控制的有效性。相比之下,自适应系统受益于运行时适应,而动态认证可能很困难。对信息系统遵从安全约束的信心可以使用安全保证案例(SACs)来表示。具体来说,NIST安全控制遵循一种重复的结构,使其符合sac方面的规范。相关安全控制的sac集合形成一个网络,该网络可用于通过基于认证的证据评估系统的遵从性级别。一旦部署了系统,环境和功能的不确定性可能需要更复杂的适应,包括功能和安全适应的协调。本文介绍了MAPE-SAC控制回路及其与MAPE-K控制回路的交互,以动态管理运行时适应性,以响应功能和安全条件的变化。我们用一个自动漫游车响应潜在安全事件的例子来说明控制回路及其相互作用的使用。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信