Minimizing incident response time in real-world scenarios using quantum computing
Ver/ Abrir
Registro completo
Mostrar el registro completo DCAutoría
Serrano, Manuel A.; Sánchez Crespo, Luis Enrique; Santos Olmo, Antonio; Rosado, David A.; Blanco Bueno, Carlos
Fecha
2024-03Derechos
This article is licensed under a Creative Commons Attribution 4.0 International License, which permits use, sharing, adaptation, distribution and reproduction in any medium or format, as long as you give appropriate credit to the original author(s) and the source, provide a link to the Creative Commons licence, and indicate if changes were made.
Publicado en
Software Quality Journal, 2024, 32(1), 163-192
Editorial
Springer New York LLC
Enlace a la publicación
Palabras clave
Security
Risk management
Quantum programming
Incident response
Resumen/Abstract
The Information Security Management Systems (ISMS) are global and risk-driven processes that allow companies to develop their cybersecurity strategy by defining security policies, valuable assets, controls, and technologies for protecting their systems and information from threats and vulnerabilities. Despite the implementation of such management infrastructures, incidents or security breaches happen. Each incident has associated a level of severity and a set of mitigation controls, so in order to restore the ISMS, the appropriate
set of controls to mitigate their damage must be selected. The time in which the ISMS is restored is a critical aspect. In this sense, classic solutions are efficient in resolving scenarios with a moderate number of incidents in a reasonable time, but the response time increases exponentially as the number of incidents increases. This makes classical solutions unsuitable for real scenarios in which a large number of incidents are handled and
even less appropriate for scenarios in which security management is offered as a service to several companies. This paper proposes a solution to the incident response problem that acts in a minimal amount of time for real scenarios in which a large number of incidents are handled. It applies quantum computing, as a novel approach that is being successfully applied to real problems, which allows us to obtain solutions in a constant time regardless of the number of incidents handled. To validate the applicability and efficiency of our proposal, it has been applied to real cases using our framework (MARISMA).
Colecciones a las que pertenece
- D30 Artículos [97]
- D30 Proyectos de Investigación [116]
