Preventative Directions For Insider Threat Mitigation Via Access Control

32Citations
Citations of this article
58Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Much research on mitigating threat posed by insiders focuses on detection. In this chapter, we consider the prevention of attacks using access control While recent work and development in this space are promising, our studies of technologists in financial, health care, and other enterprise environments reveal a disconnect between what "real world" practitioners desire and what the research and vendor communities can offer. Basing our arguments on this ethnographic research (which targets both technology and the human business systems that drive and constrain it), we present the theoretical underpinnings of modern access control, discuss requirements of successful solutions for corporate environments today, and offer a survey of current technology that addresses these requirements. The paper concludes by exploring areas of future development in access control that offer particular promise in the struggle to prevent insider attack.

Cite

CITATION STYLE

APA

Sinclair, S., & Smith, S. W. (2008). Preventative Directions For Insider Threat Mitigation Via Access Control. Advances in Information Security, 39, 165–193. https://doi.org/10.1007/978-0-387-77322-3_10

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free