Title
On the inability of existing security models to cope with data mobility in dynamic organizations
Abstract
Modeling tools play an important role in identifying threats in tradi- tional IT systems, where the physical infrastructure and roles are assumed to be static. In dynamic organizations, the mobility of data outside the organizational perimeter causes an increased level of threats such as the loss of confidential data and the loss of reputation. We show that current modeling tools are not powerful enough to help the designer identify the emerging threats due to mobility of data and change of roles, because they do not include the mobility of IT systems nor the organizational dynam- ics in the security model. Researchers have proposed security models that particularly focus on data mobility and the dynamics of modern organi- zations, such as frequent role changes of a person. We show that none of the current security models simultaneously considers the data mobility and organizational dynamics to a satisfactory extent. As a result, none of the current security models eectively identifies the potential security threats caused by data mobility in a dynamic organization.
Year
Venue
Keywords
2008
MODSEC@MoDELS
security model
DocType
Citations 
PageRank 
Conference
1
0.38
References 
Authors
14
3
Name
Order
Citations
PageRank
Trajce Dimkov1736.27
Qiang Tang2202.92
Pieter Hartel31159115.28