Home > Research > Publications & Outputs > A security metrics framework for the Cloud
View graph of relations

A security metrics framework for the Cloud

Research output: Contribution in Book/Report/Proceedings - With ISBN/ISSNConference contribution/Paperpeer-review

Published

Standard

A security metrics framework for the Cloud. / Luna, J.; Ghani, H.; Germanus, D. et al.
Proceedings of the International Conference on Security and Cryptography 2011. IEEE, 2011. p. 245-250.

Research output: Contribution in Book/Report/Proceedings - With ISBN/ISSNConference contribution/Paperpeer-review

Harvard

Luna, J, Ghani, H, Germanus, D & Suri, N 2011, A security metrics framework for the Cloud. in Proceedings of the International Conference on Security and Cryptography 2011. IEEE, pp. 245-250. <https://ieeexplore.ieee.org/document/6732394>

APA

Luna, J., Ghani, H., Germanus, D., & Suri, N. (2011). A security metrics framework for the Cloud. In Proceedings of the International Conference on Security and Cryptography 2011 (pp. 245-250). IEEE. https://ieeexplore.ieee.org/document/6732394

Vancouver

Luna J, Ghani H, Germanus D, Suri N. A security metrics framework for the Cloud. In Proceedings of the International Conference on Security and Cryptography 2011. IEEE. 2011. p. 245-250

Author

Luna, J. ; Ghani, H. ; Germanus, D. et al. / A security metrics framework for the Cloud. Proceedings of the International Conference on Security and Cryptography 2011. IEEE, 2011. pp. 245-250

Bibtex

@inproceedings{7a963ed7402c49b790fb753b78c904fa,
title = "A security metrics framework for the Cloud",
abstract = "Cloud computing is redefining the on-demand usage of remotely-located, and highly available computing resources to the user. Unfortunately, while the many economic and technological advantages are apparent, the migration of key sector applications to the Cloud has been limited due to a major show-stopper: the paucity of quantifiable metrics to evaluate the tradeoffs (features, problems and the economics) of security. Despite the obvious value ofmetrics in different scenarios to evaluate such tradeoffs, a formal and standard-based approach for the addressing of security metrics in the Cloud is a much harder and very much an open issue. This paper presents our views on the importance and challenges for developing a security metrics framework for the Cloud, also taking into account our ongoing research with organizations like the Cloud Security Alliance and European projects like ABC4Trust, CoMiFin and INSPIRE. This paper also introduces the basic building blocks of a proposed security metrics framework for elements such as a Cloud provider's security assessment, taking into account the different service and deployment models of the Cloud.",
keywords = "Cloud dependability, Cloud security, Security compliance, Security measurements, Security metrics, Basic building block, Cloud providers, Computing resource, Different services, European project, Security assessment, Security measurement, Cryptography, Rating, Regulatory compliance, Cloud computing",
author = "J. Luna and H. Ghani and D. Germanus and Neeraj Suri",
year = "2011",
month = jul,
day = "18",
language = "English",
pages = "245--250",
booktitle = "Proceedings of the International Conference on Security and Cryptography 2011",
publisher = "IEEE",

}

RIS

TY - GEN

T1 - A security metrics framework for the Cloud

AU - Luna, J.

AU - Ghani, H.

AU - Germanus, D.

AU - Suri, Neeraj

PY - 2011/7/18

Y1 - 2011/7/18

N2 - Cloud computing is redefining the on-demand usage of remotely-located, and highly available computing resources to the user. Unfortunately, while the many economic and technological advantages are apparent, the migration of key sector applications to the Cloud has been limited due to a major show-stopper: the paucity of quantifiable metrics to evaluate the tradeoffs (features, problems and the economics) of security. Despite the obvious value ofmetrics in different scenarios to evaluate such tradeoffs, a formal and standard-based approach for the addressing of security metrics in the Cloud is a much harder and very much an open issue. This paper presents our views on the importance and challenges for developing a security metrics framework for the Cloud, also taking into account our ongoing research with organizations like the Cloud Security Alliance and European projects like ABC4Trust, CoMiFin and INSPIRE. This paper also introduces the basic building blocks of a proposed security metrics framework for elements such as a Cloud provider's security assessment, taking into account the different service and deployment models of the Cloud.

AB - Cloud computing is redefining the on-demand usage of remotely-located, and highly available computing resources to the user. Unfortunately, while the many economic and technological advantages are apparent, the migration of key sector applications to the Cloud has been limited due to a major show-stopper: the paucity of quantifiable metrics to evaluate the tradeoffs (features, problems and the economics) of security. Despite the obvious value ofmetrics in different scenarios to evaluate such tradeoffs, a formal and standard-based approach for the addressing of security metrics in the Cloud is a much harder and very much an open issue. This paper presents our views on the importance and challenges for developing a security metrics framework for the Cloud, also taking into account our ongoing research with organizations like the Cloud Security Alliance and European projects like ABC4Trust, CoMiFin and INSPIRE. This paper also introduces the basic building blocks of a proposed security metrics framework for elements such as a Cloud provider's security assessment, taking into account the different service and deployment models of the Cloud.

KW - Cloud dependability

KW - Cloud security

KW - Security compliance

KW - Security measurements

KW - Security metrics

KW - Basic building block

KW - Cloud providers

KW - Computing resource

KW - Different services

KW - European project

KW - Security assessment

KW - Security measurement

KW - Cryptography

KW - Rating

KW - Regulatory compliance

KW - Cloud computing

M3 - Conference contribution/Paper

SP - 245

EP - 250

BT - Proceedings of the International Conference on Security and Cryptography 2011

PB - IEEE

ER -