A Policy-based Security Framework for Storage and Computation on Enterprise Data in the Cloud

被引:0
|
作者
De, Sourya Joyee [1 ]
Pal, Asim K. [1 ]
机构
[1] Indian Inst Management, Management Informat Syst Grp, Kolkata 700027, W Bengal, India
关键词
D O I
10.1109/HICSS.2014.613
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A whole range of security concerns that can act as barriers to the adoption of cloud computing have been identified by researchers over the last few years. While outsourcing its business-critical data and computations to the cloud, an enterprise loses control over them. How should the organization decide what security measures to apply to protect its data and computations that have different security requirements from a Cloud Service Provider (CSP) with an unknown level of corruption? The answer to this question relies on the organization's perception about the CSP's trustworthiness and the security requirements of its data. This paper proposes a decentralized, dynamic and evolving policy-based security framework that helps an organization to derive such perceptions from knowledgeable and trusted employee roles and based on that, choose the most relevant security policy specifying the security measures necessary for outsourcing data and computations to the cloud. The organizational perception is built through direct user participation and is allowed to evolve over time.
引用
收藏
页码:4986 / 4997
页数:12
相关论文
共 50 条
  • [21] Investigation of the effectiveness of alert correlation methods in a policy-based security framework
    Balcerek, Bartlomiej
    Dragan, Piotr
    Trawinski, Bogdan
    Wojtkiewicz, Marcin
    COMPUTER NETWORK SECURITY, PROCEEDINGS, 2007, 1 : 334 - +
  • [22] A policy-based evaluation framework for quality and security in service oriented Architectures
    Casola, V.
    Fasolino, A. R.
    Mazzocca, N.
    Tramontana, P.
    2007 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, PROCEEDINGS, 2007, : 1181 - +
  • [23] A policy-based framework for RBAC
    Nabhen, R
    Jamhour, E
    Maziero, C
    SELF-MANAGING DISTRIBUTED SYSTEMS, 2003, 2867 : 181 - 193
  • [24] Data Vaporizer - Towards a Configurable Enterprise Data Storage Framework in Public Cloud
    Sengupta, Shubhashis
    Annervaz, K. M.
    Saxena, Amitabh
    Paul, Sanjoy
    2015 IEEE 8TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING, 2015, : 73 - 80
  • [25] POLICY-BASED SECURITY CHANNELS FOR PROTECTING NETWORK COMMUNICATION IN MOBILE CLOUD COMPUTING
    Itani, Wassim
    Kayssi, Ayman
    Chehab, Ali
    SECRYPT 2011: PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2011, : 450 - 456
  • [26] Policy-Based Labelling: A Flexible Framework for Trusted Data Labelling
    Kongsgard, Kyrre Wahl
    Nordbotten, Nils Agne
    Fauskanger, Stian
    2015 INTERNATIONAL CONFERENCE ON MILITARY COMMUNICATIONS AND INFORMATION SYSTEMS (ICMCIS), 2015,
  • [27] POLICY-BASED SCHEDULING OF CLOUD SERVICES
    Nizamic, Faris
    Degeler, Viktoriya
    Groenboom, Rix
    Lazovik, Alexander
    SCALABLE COMPUTING-PRACTICE AND EXPERIENCE, 2012, 13 (03): : 187 - 199
  • [28] A multi-agent security framework for cloud data storage
    Arki, Oussama
    Zitouni, Abdelhafid
    Dib, Ahmed Taki Eddine
    MULTIAGENT AND GRID SYSTEMS, 2018, 14 (04) : 357 - 382
  • [29] A Two-Tiers Framework for Cloud Data Storage (CDS) Security Based on Agent
    Arki, Oussama
    Zitouni, Abdelhafid
    INTERACTIVE MOBILE COMMUNICATION TECHNOLOGIES AND LEARNING, 2018, 725 : 814 - 823
  • [30] Policy-based QoS enforcement for adaptive Big Data Distribution on the Cloud
    El Kassabi, Hadeel T.
    Taleb, Ikbal
    Serhani, Mohamed Adel
    Dssouli, Rachida
    PROCEEDINGS 2016 IEEE SECOND INTERNATIONAL CONFERENCE ON BIG DATA COMPUTING SERVICE AND APPLICATIONS (BIGDATASERVICE 2016), 2016, : 225 - 233