Model of security threats arising from the management of information security systems
DOI: 10.21293/1818-0442-2019-22-3-31-36
DOI: 10.21293/1818-0442-2019-22-3-31-36
Abstract: This paper presents a threat model aimed at improving the security level of an information protection system. To build the model, graph theory and business process management theory are used. The developed model includes threats aimed at personnel, technical and regulatory components of the information protection system. The types of threats are formed on the basis of the Deming cycle, which allows to take into account all the significant processes of system management. Taking into account all the significant components and processes of managing the information security system is a significant advantage over existing threat models.
Keywords: security threat model, information protection system, integrity threats, life cycle, management processes, list of information threats
Authors and copyright holders:
—
For citation:
Soloviev M. L., Mineeva T. E., Konev A. A., Buintsev D. N. Model of security threats arising from the management of information security systems. Doklady Tomskogo gosudarstvennogo universiteta sistem upravleniya i radioelektroniki, 2019, vol. 22, no. 3, pp. 31–36. DOI: 10.21293/1818-0442-2019-22-3-31-36
Executive Secretary of the Editor’s Office
Editor’s Office: 40 Lenina Prospect, Tomsk, 634050, Russia
Phone / Fax: + 7 (3822) 701-582
Viktor N. Maslennikov
Executive Secretary of the Editor’s Office
Editor’s Office: 40 Lenina Prospect, Tomsk, 634050, Russia
Phone / Fax: + 7 (3822) 51-21-21 / 51-43-02