An approach to finding the cost-effective immunization targets for information assurance

被引:6
|
作者
Liu, Guannan [1 ]
Zhang, Jin [2 ]
Chen, Guoqing [1 ]
机构
[1] Tsinghua Univ, Sch Econ & Management, Dept Management Sci & Engn, Beijing 100084, Peoples R China
[2] Renmin Univ China, Sch Business, Dept Management Sci & Engn, Beijing 100872, Peoples R China
基金
中国国家自然科学基金;
关键词
Information assurance; Network immunization; Savability; Cost-effective immunization targets (CEIT); SECURITY;
D O I
10.1016/j.dss.2014.08.002
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Information assurance is increasing in importance as threats abound in the highly connected world of e-business. For enterprises, the goal is to achieve a secure information environment in a cost-effective manner. This paper focuses on the issue of how to cost-effectively immunize an enterprise's network to prevent threats (e.g., virus, rumor) from invading and spreading. An approach, namely Cost-Effective Immunization Targets (CEIT) is proposed as a means to identify the cost-effective immunization targets and provide direct cost/benefit trade-off solutions for practitioners. In the approach, a novel concept, savability, is introduced as an extension of return on security investment (ROSI), with the reduced expected infection probability as mitigated risks through immunization. Meanwhile, a bond percolation process, which can be done in just a single graph traversal, is incorporated to simplify the estimation of expected infection probability in place of repeated diffusion simulations. Theoretical analysis proves that the proposed approach can approximate the optimal solutions within a definite lower bound. Finally, experiments on real-world information network datasets reveal that the algorithm CEIT outperforms other immunization strategies in both homogeneous and heterogeneous cost cases. Further, a case study indicates that the CEIT-identified immunization targets are more likely to 'save' the important nodes with high potential infection loss, avoiding redundant immunization. (C) 2014 Elsevier B.V. All rights reserved.
引用
收藏
页码:40 / 52
页数:13
相关论文
共 50 条
  • [1] COST-EFFECTIVE QUALITY ASSURANCE.
    Mills, C.A.
    Quality assurance London, 1984, 10 (04): : 106 - 108
  • [2] Cost-Effective Quality Assurance in Crowd Labeling
    Wang, Jing
    Ipeirotis, Panagiotis G.
    Provost, Foster
    INFORMATION SYSTEMS RESEARCH, 2017, 28 (01) : 137 - 158
  • [3] PRINCIPLES OF SCREENING AND COST-EFFECTIVE PRODUCT ASSURANCE
    RYERSON, CM
    MICROELECTRONICS AND RELIABILITY, 1980, 20 (05): : 693 - 715
  • [4] COPD case finding: effective, but also cost-effective?
    van Boven, Job F. M.
    McQueen, R. Brett
    Price, David B.
    LANCET RESPIRATORY MEDICINE, 2016, 4 (10): : E49 - E49
  • [5] COST-EFFECTIVE INSTANT INFORMATION
    IBRAHIM, SM
    MURPHY, NA
    JONES, CA
    HALL, HJ
    PROCEEDINGS OF THE AMERICAN SOCIETY FOR INFORMATION SCIENCE, 1981, 18 : 371 - 371
  • [6] Finding Cost-effective Solutions - Need of the Hour
    Patil, Vijaya Prakash
    Rajput, Abhishek
    INDIAN JOURNAL OF CRITICAL CARE MEDICINE, 2022, 26 (11) : 1163 - 1164
  • [7] FINDING COST-EFFECTIVE APPLICATIONS FOR EXPERT SYSTEMS
    HARTMAN, PJ
    JOURNAL OF ENERGY RESOURCES TECHNOLOGY-TRANSACTIONS OF THE ASME, 1993, 115 (01): : 56 - 61
  • [8] A COST-EFFECTIVE APPROACH TO TESTING
    SHERER, SA
    IEEE SOFTWARE, 1991, 8 (02) : 34 - 40
  • [9] Cost-effective quality assurance of rented medical equipment
    Davis, C.E.
    Furst, E.
    Journal of Clinical Engineering, 1988, 13 (06) : 421 - 425
  • [10] Cost-Effective Mission Assurance Engineering Through Simulation
    Siil, Karl
    Rubin, Aviel
    Elder, Matthew
    Dahbura, Anton
    Green, Matthew
    Watkins, Lanier
    2021 IEEE INTERNATIONAL CONFERENCE ON INTERNET OF THINGS AND INTELLIGENCE SYSTEMS (IOTAIS), 2021, : 67 - 72