{"title":"Deteksi, Monitoring Dan Pencegahan Insider Threat : As A Survey","authors":"M. Firmansyah, Yurry Matufira","doi":"10.1123/IJNS.V5I3.1427","DOIUrl":null,"url":null,"abstract":"Abstract - many organizations using networks such as the Internet in data management. With a network of course the threat continues to threaten the confidentiality, integrity and availability of the system. Many organizations do this prevention, but they usually focus on the threat from the outside. The threat from within is more easily abuse the access authority often escape the focus of prevention. \nHas been a lot of research that explores the problems of insider threat. The approach taken out of the habit theory proposed by Moyano, Bayesian Network models and preliminary model of the End User Computing (EUC). \nThis paper defines the threat from within (Insider Threat) with techniques of detection and prevention, and then do the mapping for the management of the system against the insider threat. \nKeywords: insider threats, detection, monitoring, sociology, management system \n \nAbstrak – Organisasi banyak menggunakan jaringan seperti internet dalam pengelolaan data. Dengan jaringan tentu saja ancaman senantiasa mengancam confidentiality, integrity dan availability system. Banyak organisasi melakukan pencegahan ini, namun biasanya fokus mereka pada ancaman dari luar. Adapun ancaman dari dalam yang lebih mudah menyalahgunakan otoritas akses sering luput dari fokus pencegahannya. \nTelah banyak penelitian yang mengetengahkan permasalahan insider threat. Pendekatan diambil dari teori kebiasaan yang diajukan oleh Moyano, model Bayesian Network dan model preliminary pada End User Computing (EUC). \nTulisan ini mendefinisikan ancaman dari dalam (Insider threat) dengan teknik-teknik pendeteksian dan pencegahannya dan kemudian melakukan pemetaan untuk pengelolaan manajemen sistem terhadap insider threat. \nKata kunci: insider threat, detection, monitoring, sociology, system management","PeriodicalId":13263,"journal":{"name":"IJNS - Indonesian Journal on Networking and Security","volume":"11 12","pages":""},"PeriodicalIF":0.0000,"publicationDate":"2016-05-10","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IJNS - Indonesian Journal on Networking and Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1123/IJNS.V5I3.1427","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0
Abstract
Abstract - many organizations using networks such as the Internet in data management. With a network of course the threat continues to threaten the confidentiality, integrity and availability of the system. Many organizations do this prevention, but they usually focus on the threat from the outside. The threat from within is more easily abuse the access authority often escape the focus of prevention.
Has been a lot of research that explores the problems of insider threat. The approach taken out of the habit theory proposed by Moyano, Bayesian Network models and preliminary model of the End User Computing (EUC).
This paper defines the threat from within (Insider Threat) with techniques of detection and prevention, and then do the mapping for the management of the system against the insider threat.
Keywords: insider threats, detection, monitoring, sociology, management system
Abstrak – Organisasi banyak menggunakan jaringan seperti internet dalam pengelolaan data. Dengan jaringan tentu saja ancaman senantiasa mengancam confidentiality, integrity dan availability system. Banyak organisasi melakukan pencegahan ini, namun biasanya fokus mereka pada ancaman dari luar. Adapun ancaman dari dalam yang lebih mudah menyalahgunakan otoritas akses sering luput dari fokus pencegahannya.
Telah banyak penelitian yang mengetengahkan permasalahan insider threat. Pendekatan diambil dari teori kebiasaan yang diajukan oleh Moyano, model Bayesian Network dan model preliminary pada End User Computing (EUC).
Tulisan ini mendefinisikan ancaman dari dalam (Insider threat) dengan teknik-teknik pendeteksian dan pencegahannya dan kemudian melakukan pemetaan untuk pengelolaan manajemen sistem terhadap insider threat.
Kata kunci: insider threat, detection, monitoring, sociology, system management
摘要——许多组织使用Internet等网络进行数据管理。当然,对于网络,这种威胁继续威胁着系统的机密性、完整性和可用性。许多组织都做这种预防,但他们通常关注的是来自外部的威胁。来自内部的威胁更容易被滥用,访问权限往往逃过防范的重点。有很多研究探讨了内部威胁的问题。该方法借鉴了Moyano提出的习惯理论、贝叶斯网络模型和终端用户计算(EUC)的初步模型。本文用检测和预防技术定义了来自内部的威胁(内部威胁),并针对内部威胁对系统的管理进行了映射。关键词:内部威胁,检测,监测,社会学,管理系统摘要:组织榕树,孟古纳坎,jaringan和seperti,互联网,dalam, penelolaan数据。登高词典和词典的翻译结果:登高词典的保密性、完整性和可用性系统。Banyak organisasi melakukan penegahan ini, namun biasanya fokus mereka pada and aman dari luar。Adapun和aman dari dalam yang lebih mudah menyalahgunakan otoritas为印度人提供服务。Telah banyak penelitian yang mengetengahan permasalahan内部威胁。模型贝叶斯网络模型初步研究终端用户计算(EUC)。内部威胁,内部威胁,内部威胁,内部威胁,内部威胁,内部威胁Kata kunci:内部威胁,检测,监控,社会学,系统管理