1,721,004 research outputs found
SECURITY METRICS TO EVALUATE QUALITY OF PROTECTION
As organizações precisam estar conscientes de qual o grau de protecção contra ameaças à segurança da sua
informação.
A fim de establecer prioridades nos investimentos, as organizações precisam conhecer o "estado da arte"
da sua segurança, para definir que sistemas precisam, mais cedo, de mais atenção. Isso só é possível com
números que permitam identificar o nível de segurança dum sistema de informação e compará-lo com os
outros. Para atingir este objectivo, as organizações devem definir quais são os factos relevantes que devem
ser medidos, e como extrair informações significativas a partir dessas medidas.
As métricas de segurança ajudam as organizações a compreender a Qualidade de Protecção (QoP - Quality of
Protection) dos seus sistemas de informação. Estas são uma valiosa ferramenta para diagnosticar problemas.
No entanto, devem ser usadas com precaução, uma vez que, por exemplo, valores idênticos podem, em
contextos diferentes, não ter o mesmo significado. O que exige sentido critico, ao técnico que analisa tais
metricas, para perceber o seu real significado. As métricas de segurança devem ser usadas da mesma forma
que um médico usa os resultados das análises de sangue, ou da pressão arterial, não como um resultado "per
se", mas como um indicador de um possível problema.
Este projecto tem como objectivo a implementação de um conjunto de métricas de segurança, para avaliar
quão vulneráveis estão os sistemas de informação duma organização e qual é o nível de ameaça que enfrentam.
Pretende-se ainda combinar essas métricas para determinar a sua QoP.
Para atingir estes objectivos, vamos identificar que métricas são pertinentes para cada tipo de componente do
sistema de informação, vamos definir um modelo para calcular as métricas recolhidas e obter a informação
sobre o risco de segurança do sistema, e finalmente vamos submeter a nossa proposta a um sistema real para
verificar a aplicabilidade prática deste trabalho
SECURITY METRICS TO EVALUATE QUALITY OF PROTECTION
As organizações precisam estar conscientes de qual o grau de protecção contra ameaças à segurança da sua
informação.
A fim de establecer prioridades nos investimentos, as organizações precisam conhecer o "estado da arte"
da sua segurança, para definir que sistemas precisam, mais cedo, de mais atenção. Isso só é possível com
números que permitam identificar o nível de segurança dum sistema de informação e compará-lo com os
outros. Para atingir este objectivo, as organizações devem definir quais são os factos relevantes que devem
ser medidos, e como extrair informações significativas a partir dessas medidas.
As métricas de segurança ajudam as organizações a compreender a Qualidade de Protecção (QoP - Quality of
Protection) dos seus sistemas de informação. Estas são uma valiosa ferramenta para diagnosticar problemas.
No entanto, devem ser usadas com precaução, uma vez que, por exemplo, valores idênticos podem, em
contextos diferentes, não ter o mesmo significado. O que exige sentido critico, ao técnico que analisa tais
metricas, para perceber o seu real significado. As métricas de segurança devem ser usadas da mesma forma
que um médico usa os resultados das análises de sangue, ou da pressão arterial, não como um resultado "per
se", mas como um indicador de um possível problema.
Este projecto tem como objectivo a implementação de um conjunto de métricas de segurança, para avaliar
quão vulneráveis estão os sistemas de informação duma organização e qual é o nível de ameaça que enfrentam.
Pretende-se ainda combinar essas métricas para determinar a sua QoP.
Para atingir estes objectivos, vamos identificar que métricas são pertinentes para cada tipo de componente do
sistema de informação, vamos definir um modelo para calcular as métricas recolhidas e obter a informação
sobre o risco de segurança do sistema, e finalmente vamos submeter a nossa proposta a um sistema real para
verificar a aplicabilidade prática deste trabalho
Security metrics to evaluate quality of protection
Tese de mestrado em Segurança Informática, apresentada à Universidade de Lisboa, através da Faculdade de Ciências, 2011As organizações precisam estar conscientes de qual o grau de protecção contra ameaças à segurança da sua informação.
A fim de estabelecer prioridades nos investimentos, as organizações precisam conhecer o "estado da arte" da sua segurança, para definir que sistemas precisam, mais cedo, de mais atenção. Isso só é possível com números que permitam identificar o nível de segurança dum sistema de informação e compará-lo com os outros. Para atingir este objectivo, as organizações devem definir quais são os factos relevantes que devem ser medidos, e como extrair informações significativas a partir dessas medidas.
As métricas de segurança ajudam as organizações a compreender a Qualidade de Protecção (QoP - Quality of Protection) dos seus sistemas de informação. Estas são uma valiosa ferramenta para diagnosticar problemas. No entanto, devem ser usadas com precaução, uma vez que, por exemplo, valores idênticos podem, em contextos diferentes, não ter o mesmo significado. O que exige sentido crítico, ao técnico que analisa tais métricas, para perceber o seu real significado. As métricas de segurança devem ser usadas da mesma forma que um médico usa os resultados das análises de sangue, ou da pressão arterial, não como um resultado "per se", mas como um indicador de um possível problema.
Este projecto tem como objectivo a implementação de um conjunto de métricas de segurança, para avaliar quão vulneráveis estão os sistemas de informação duma organização e qual é o nível de ameaça que enfrentam. Pretende-se ainda combinar essas métricas para determinar a sua QoP.
Para atingir estes objectivos, vamos identificar que métricas são pertinentes para cada tipo de componente do sistema de informação, vamos definir um modelo para calcular as métricas recolhidas e obter a informação sobre o risco de segurança do sistema, e finalmente vamos submeter a nossa proposta a um sistema real para verificar a aplicabilidade prática deste trabalho.Organizations need be aware of how protected they are against information security threats.
In order to prioritize their investments, organizations need to know the “state of the art” about their security, to determine which system needs closer attention, sooner. This is only possible with numbers that allow define system’s security level, and compare it with others. In order to achieve this goal, organizations must define which are the relevant facts that should be measured, and how to extract meaningful information from those measures.
Security metrics help organizations to understand the QoP (Quality of Protection) of their information systems. Security metrics are a valuable tool for diagnosing problems. Nevertheless, it should be used with caution, given that, for example, identical values may, in different contexts, not have the same meaning, which demands critical judgement by the technician, which analyzes such metrics, to realize their true meaning. Security metrics should be used the same way a physician uses blood test results, or blood pressure monitoring, not as an outcome “per se” but as an indicator of a possible problem.
This project aims to propose the implementation of a set of security metrics, to evaluate how vulnerable are information systems, and what is the threat level they face. We also want to combine these metrics to determine their QoP.
To achieve our goals, we will identify which metrics are relevant for each type of information system component, we will define a model to compute the metrics collected and derive the information system security risk, and finally we will apply our proposal to a real system to verify the practical applicability of this work
Security metrics to evaluate quality of protection
Tese de mestrado em Segurança Informática, apresentada à Universidade de Lisboa, através da Faculdade de Ciências, 2011As organizações precisam estar conscientes de qual o grau de protecção contra ameaças à segurança da sua informação.
A fim de estabelecer prioridades nos investimentos, as organizações precisam conhecer o "estado da arte" da sua segurança, para definir que sistemas precisam, mais cedo, de mais atenção. Isso só é possível com números que permitam identificar o nível de segurança dum sistema de informação e compará-lo com os outros. Para atingir este objectivo, as organizações devem definir quais são os factos relevantes que devem ser medidos, e como extrair informações significativas a partir dessas medidas.
As métricas de segurança ajudam as organizações a compreender a Qualidade de Protecção (QoP - Quality of Protection) dos seus sistemas de informação. Estas são uma valiosa ferramenta para diagnosticar problemas. No entanto, devem ser usadas com precaução, uma vez que, por exemplo, valores idênticos podem, em contextos diferentes, não ter o mesmo significado. O que exige sentido crítico, ao técnico que analisa tais métricas, para perceber o seu real significado. As métricas de segurança devem ser usadas da mesma forma que um médico usa os resultados das análises de sangue, ou da pressão arterial, não como um resultado "per se", mas como um indicador de um possível problema.
Este projecto tem como objectivo a implementação de um conjunto de métricas de segurança, para avaliar quão vulneráveis estão os sistemas de informação duma organização e qual é o nível de ameaça que enfrentam. Pretende-se ainda combinar essas métricas para determinar a sua QoP.
Para atingir estes objectivos, vamos identificar que métricas são pertinentes para cada tipo de componente do sistema de informação, vamos definir um modelo para calcular as métricas recolhidas e obter a informação sobre o risco de segurança do sistema, e finalmente vamos submeter a nossa proposta a um sistema real para verificar a aplicabilidade prática deste trabalho.Organizations need be aware of how protected they are against information security threats.
In order to prioritize their investments, organizations need to know the “state of the art” about their security, to determine which system needs closer attention, sooner. This is only possible with numbers that allow define system’s security level, and compare it with others. In order to achieve this goal, organizations must define which are the relevant facts that should be measured, and how to extract meaningful information from those measures.
Security metrics help organizations to understand the QoP (Quality of Protection) of their information systems. Security metrics are a valuable tool for diagnosing problems. Nevertheless, it should be used with caution, given that, for example, identical values may, in different contexts, not have the same meaning, which demands critical judgement by the technician, which analyzes such metrics, to realize their true meaning. Security metrics should be used the same way a physician uses blood test results, or blood pressure monitoring, not as an outcome “per se” but as an indicator of a possible problem.
This project aims to propose the implementation of a set of security metrics, to evaluate how vulnerable are information systems, and what is the threat level they face. We also want to combine these metrics to determine their QoP.
To achieve our goals, we will identify which metrics are relevant for each type of information system component, we will define a model to compute the metrics collected and derive the information system security risk, and finally we will apply our proposal to a real system to verify the practical applicability of this work
Security metrics to evaluate quality of protection
Tese de mestrado em Segurança Informática, apresentada à Universidade de Lisboa, através da Faculdade de Ciências, 2011As organizações precisam estar conscientes de qual o grau de protecção contra ameaças à segurança da sua informação.
A fim de estabelecer prioridades nos investimentos, as organizações precisam conhecer o "estado da arte" da sua segurança, para definir que sistemas precisam, mais cedo, de mais atenção. Isso só é possível com números que permitam identificar o nível de segurança dum sistema de informação e compará-lo com os outros. Para atingir este objectivo, as organizações devem definir quais são os factos relevantes que devem ser medidos, e como extrair informações significativas a partir dessas medidas.
As métricas de segurança ajudam as organizações a compreender a Qualidade de Protecção (QoP - Quality of Protection) dos seus sistemas de informação. Estas são uma valiosa ferramenta para diagnosticar problemas. No entanto, devem ser usadas com precaução, uma vez que, por exemplo, valores idênticos podem, em contextos diferentes, não ter o mesmo significado. O que exige sentido crítico, ao técnico que analisa tais métricas, para perceber o seu real significado. As métricas de segurança devem ser usadas da mesma forma que um médico usa os resultados das análises de sangue, ou da pressão arterial, não como um resultado "per se", mas como um indicador de um possível problema.
Este projecto tem como objectivo a implementação de um conjunto de métricas de segurança, para avaliar quão vulneráveis estão os sistemas de informação duma organização e qual é o nível de ameaça que enfrentam. Pretende-se ainda combinar essas métricas para determinar a sua QoP.
Para atingir estes objectivos, vamos identificar que métricas são pertinentes para cada tipo de componente do sistema de informação, vamos definir um modelo para calcular as métricas recolhidas e obter a informação sobre o risco de segurança do sistema, e finalmente vamos submeter a nossa proposta a um sistema real para verificar a aplicabilidade prática deste trabalho.Organizations need be aware of how protected they are against information security threats.
In order to prioritize their investments, organizations need to know the “state of the art” about their security, to determine which system needs closer attention, sooner. This is only possible with numbers that allow define system’s security level, and compare it with others. In order to achieve this goal, organizations must define which are the relevant facts that should be measured, and how to extract meaningful information from those measures.
Security metrics help organizations to understand the QoP (Quality of Protection) of their information systems. Security metrics are a valuable tool for diagnosing problems. Nevertheless, it should be used with caution, given that, for example, identical values may, in different contexts, not have the same meaning, which demands critical judgement by the technician, which analyzes such metrics, to realize their true meaning. Security metrics should be used the same way a physician uses blood test results, or blood pressure monitoring, not as an outcome “per se” but as an indicator of a possible problem.
This project aims to propose the implementation of a set of security metrics, to evaluate how vulnerable are information systems, and what is the threat level they face. We also want to combine these metrics to determine their QoP.
To achieve our goals, we will identify which metrics are relevant for each type of information system component, we will define a model to compute the metrics collected and derive the information system security risk, and finally we will apply our proposal to a real system to verify the practical applicability of this work
Going Beyond Counting First Authors in Author Co-citation Analysis
The present study examines one of the fundamental aspects of author co-citation analysis (ACA) - the way co-citation
counts are defined. Co-citation counting provides the data on which all subsequent statistical analyses and mappings
are based, and we compare ACA results based on two different types of co-citation counting - the traditional type that
only counts the first one among a cited work's authors on the one hand and a non-traditional type that takes into
account the first 5 authors of a cited work on the other hand. Results indicate that the picture produced through this non-traditional author co-citation counting contains more coherent author groups and is therefore considerably clearer. However, this picture represents fewer specialties in the research field being studied than that produced through the traditional first-author co-citation counting when the same number of top-ranked authors is selected and analyzed. Reasons for these effects are discussed
Variations on the Author
“Variations on the Author” discusses two of Eduardo Coutinho’s recent films (Um Dia na Vida, from 2010, and Últimas Conversas, posthumously released in 2015) and their contribution to the general question of documentary authorship. The director’s filmography is characterized by a consistent yet self-effacing form of authorial self-inscription: Coutinho often features as an interviewer that rather than express opinions propels discourses; an interviewer that is good at listening. This mode of self-inscription characterizes him as an author who is not expressive but who is nonetheless markedly present on the screen. In Um Dia na Vida, however, Coutinho is completely absent form the image, while Últimas Conversas, on the contrary, includes a confessional prologue that moves the director from the margins to the center of his films. This article examines the ways in which these works stand out in the filmography of a director who offers new insights into the notion of cinematic authorship
Appropriate Similarity Measures for Author Cocitation Analysis
We provide a number of new insights into the methodological discussion about author cocitation analysis. We first argue that the use of the Pearson correlation for measuring the similarity between authors’ cocitation profiles is not very satisfactory. We then discuss what kind of similarity measures may be used as an alternative to the Pearson correlation. We consider three similarity measures in particular. One is the well-known cosine. The other two similarity measures have not been used before in the bibliometric literature. Finally, we show by means of an example that our findings have a high practical relevance.information science;Pearson correlation;cosine;similarity measure;author cocitation analysis
Dispelling the Myths Behind First-author Citation Counts
We conducted a full-scale evaluative citation analysis study of scholars in the XML research field to explore just how different from each other author rankings resulting from different citation counting methods actually are, and to demonstrate the capability of emerging data and tools on the Web in supporting more realistic citation counting methods. Our results contest some common arguments for the continued
use of first-author citation counts in the evaluation of scholars, such as high correlations between author rankings by first-author citation counts and other citation
counting methods, and high costs of using more realistic citation counting methods that are not well-supported by the ISI databases. It is argued that increasingly available digital full text research papers make it possible for citation analysis studies to go beyond what the ISI databases have directly supported and to employ more
sophisticated methods
- …
