Improving Threat Mitigation Through a Cybersecurity Risk Management Framework: A Computational Design Science Approach

计算机科学 计算机安全 风险管理 风险分析(工程) 设计科学 知识管理 过程管理 业务 财务
作者
Benjamin Ampel,Sagar Samtani,Hongyi Zhu,Hsinchun Chen,Jay F. Nunamaker
出处
期刊:Journal of Management Information Systems [Informa]
卷期号:41 (1): 236-265 被引量:5
标识
DOI:10.1080/07421222.2023.2301178
摘要

Cyberattacks have been increasing in volume and intensity, necessitating proactive measures. Cybersecurity risk management frameworks are deployed to provide actionable intelligence to mitigate potential threats by analyzing the available cybersecurity data. Existing frameworks, such as MITRE ATT&CK, provide timely mitigation strategies against attacker capabilities yet do not account for hacker data when developing cyber threat intelligence. Therefore, we developed a novel information technology artifact, ATT&CK-Link, which incorporates a novel transformer and multi-teacher knowledge distillation design, to link hacker threats to this broadly used framework. Here, we illustrated how hospital systems can use this framework to proactively protect their cyberinfrastructure against hacker threats. Our ATT&CK-Link framework has practical implications for cybersecurity professionals, who can implement our framework to generate strategic, operational, and tactical cyber threat intelligence. ATT&CK-Link also contributes to the information systems knowledge base by providing design principles to pursue targeted cybersecurity analytics, risk management, and broader text analytics research through simultaneous multi-modal (e.g., text and code) distillation and classification.

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
大幅提高文件上传限制,最高150M (2024-4-1)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
Orange应助孟长歌采纳,获得10
1秒前
追光完成签到,获得积分10
1秒前
彭于晏应助椰子冻采纳,获得30
2秒前
科研力力完成签到 ,获得积分10
3秒前
正直尔白发布了新的文献求助20
3秒前
3秒前
4秒前
酷酷完成签到,获得积分10
4秒前
6秒前
curtisness应助Yu采纳,获得10
9秒前
热切菩萨应助Yu采纳,获得10
9秒前
9秒前
9秒前
LIN发布了新的文献求助30
10秒前
大模型应助lll采纳,获得10
10秒前
暮光之城发布了新的文献求助10
10秒前
CipherSage应助mo采纳,获得10
11秒前
热切菩萨应助小太阳采纳,获得10
11秒前
慕青应助小太阳采纳,获得10
11秒前
机灵的靖琪完成签到,获得积分10
11秒前
SciGPT应助稳wen采纳,获得10
12秒前
冷傲半邪发布了新的文献求助30
12秒前
陌上花开完成签到,获得积分10
13秒前
13秒前
传奇3应助糊涂的伊采纳,获得30
13秒前
大虫子完成签到,获得积分10
14秒前
16秒前
18秒前
19秒前
小叮当完成签到,获得积分10
19秒前
糟糕的怀寒完成签到,获得积分20
20秒前
20秒前
20秒前
ora4ks发布了新的文献求助10
23秒前
乾乾发布了新的文献求助10
24秒前
pluto发布了新的文献求助10
25秒前
热切菩萨应助雪白安蕾采纳,获得10
30秒前
31秒前
Owen应助苯二氮卓采纳,获得10
32秒前
32秒前
高分求助中
One Man Talking: Selected Essays of Shao Xunmei, 1929–1939 1000
A Chronicle of Small Beer: The Memoirs of Nan Green 1000
Understanding Autism and Autistic Functioning 950
From Rural China to the Ivy League: Reminiscences of Transformations in Modern Chinese History 900
Eric Dunning and the Sociology of Sport 850
QMS18Ed2 | process management. 2nd ed 800
Operative Techniques in Pediatric Orthopaedic Surgery 510
热门求助领域 (近24小时)
化学 医学 材料科学 生物 工程类 有机化学 生物化学 物理 内科学 纳米技术 计算机科学 化学工程 复合材料 基因 遗传学 物理化学 催化作用 免疫学 细胞生物学 电极
热门帖子
关注 科研通微信公众号,转发送积分 2915344
求助须知:如何正确求助?哪些是违规求助? 2553823
关于积分的说明 6909409
捐赠科研通 2215440
什么是DOI,文献DOI怎么找? 1177707
版权声明 588353
科研通“疑难数据库(出版商)”最低求助积分说明 576466