Information Security Assessment by Quantifying Risk Level of Network Vulnerabilities

  • Kumar U
  • Joshi C
  • Gaud N
N/ACitations
Citations of this article
22Readers
Mendeley users who have this article in their library.

Abstract

With increasing dependency on IT infrastructure, the main objective of a system administrator is to maintain a stable and secure network, with ensure that the network is robust enough against malicious network users like attackers and intruders. Security risk management provides way to manage the growing threats to infrastructures or system. This paper proposes a framework for risk level estimation that uses vulnerability database National Institute of Standards and Technology (NIST) National Vulnerability Database (NVD) and the Common Vulnerability Scoring System (CVSS). The proposedframework measuresthe frequency of vulnerability exploitation; converges this measured frequency with standard CVSS score and estimates the security risk levelwhich helps in automated and reasonable security management. In this paper, equation for the Temporal score calculation with respect to availability of remediation plan is derived and further, frequency of exploitation is calculated with determined temporal score. The frequency of exploitation along with CVSS score is used to calculate the security risk level of the system. The proposed framework uses the CVSS vectors for risk level estimation and measures the security level of specific network environment, which assists system administrator for assessment of security risks and making decision related to mitigation of security risks.

Cite

CITATION STYLE

APA

Kumar, U., Joshi, C., & Gaud, N. (2016). Information Security Assessment by Quantifying Risk Level of Network Vulnerabilities. International Journal of Computer Applications, 156(2), 37–44. https://doi.org/10.5120/ijca2016912375

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free