dc.contributor.author | Serrano, Manuel A. | |
dc.contributor.author | Sánchez Crespo, Luis Enrique | |
dc.contributor.author | Santos Olmo, Antonio | |
dc.contributor.author | Rosado, David A. | |
dc.contributor.author | Blanco Bueno, Carlos | |
dc.contributor.author | Barletta, Vita Santa | |
dc.contributor.author | Caivano, Danilo | |
dc.contributor.author | Fernández Medina, Eduardo | |
dc.contributor.other | Universidad de Cantabria | es_ES |
dc.date.accessioned | 2024-04-29T14:17:16Z | |
dc.date.available | 2024-04-29T14:17:16Z | |
dc.date.issued | 2024-03 | |
dc.identifier.issn | 1573-1367 | |
dc.identifier.issn | 0963-9314 | |
dc.identifier.other | PID2020-112540RB-C42 | es_ES |
dc.identifier.other | TED2021-130355B-C31 ; TED2021-130355B-C33 | es_ES |
dc.identifier.uri | https://hdl.handle.net/10902/32701 | |
dc.description.abstract | The Information Security Management Systems (ISMS) are global and risk-driven processes that allow companies to develop their cybersecurity strategy by defining security policies, valuable assets, controls, and technologies for protecting their systems and information from threats and vulnerabilities. Despite the implementation of such management infrastructures, incidents or security breaches happen. Each incident has associated a level of severity and a set of mitigation controls, so in order to restore the ISMS, the appropriate
set of controls to mitigate their damage must be selected. The time in which the ISMS is restored is a critical aspect. In this sense, classic solutions are efficient in resolving scenarios with a moderate number of incidents in a reasonable time, but the response time increases exponentially as the number of incidents increases. This makes classical solutions unsuitable for real scenarios in which a large number of incidents are handled and
even less appropriate for scenarios in which security management is offered as a service to several companies. This paper proposes a solution to the incident response problem that acts in a minimal amount of time for real scenarios in which a large number of incidents are handled. It applies quantum computing, as a novel approach that is being successfully applied to real problems, which allows us to obtain solutions in a constant time regardless of the number of incidents handled. To validate the applicability and efficiency of our proposal, it has been applied to real cases using our framework (MARISMA). | es_ES |
dc.description.sponsorship | Open Access funding provided thanks to the CRUE-CSIC agreement with Springer Nature. This work has been developed within the AETHER-UCLM (PID2020-112540RB-C42) funded by MCIN/AEI/10.13039/501100011033, ALBA-UCLM (TED2021-130355B-C31, id.4809130355-130355-28-521), ALBA-UC (TED2021-130355B-C33, id.3611130630-130630-28-521) funded by "Ministerio de Ciencia e Innovación", and supported by the European Union’s Horizon 2020 Project "CyberSANE" under Grant Agreement No. 833683. | es_ES |
dc.format.extent | 30 p. | es_ES |
dc.language.iso | eng | es_ES |
dc.publisher | Springer New York LLC | es_ES |
dc.rights | This article is licensed under a Creative Commons Attribution 4.0 International License, which permits use, sharing, adaptation, distribution and reproduction in any medium or format, as long as you give appropriate credit to the original author(s) and the source, provide a link to the Creative Commons licence, and indicate if changes were made. | es_ES |
dc.rights.uri | http://creativecommons.org/licenses/by/4.0/ | * |
dc.source | Software Quality Journal, 2024, 32(1), 163-192 | es_ES |
dc.subject.other | Security | es_ES |
dc.subject.other | Risk management | es_ES |
dc.subject.other | Quantum programming | es_ES |
dc.subject.other | Incident response | es_ES |
dc.title | Minimizing incident response time in real-world scenarios using quantum computing | es_ES |
dc.type | info:eu-repo/semantics/article | es_ES |
dc.relation.publisherVersion | https://doi.org/10.1007/s11219-023-09632-6 | es_ES |
dc.rights.accessRights | openAccess | es_ES |
dc.identifier.DOI | 10.1007/s11219-023-09632-6 | |
dc.type.version | publishedVersion | es_ES |