Within the field of information security, the identification of what we are trying to secure is essential to reducing risk. In private networks, this means understanding the classification of host end-points, identifying responsible users, and knowing the location of hosts. For the context of this paper, the authors are considering the challenges faced by higher education institutions in implementing the first Center for Internet Security (CIS) Critical Security Control: inventory of authorized and unauthorized devices. The authors developed and conducted a survey of chief information security officers at these institutions. The survey evaluated their confidence in meeting the goals of host inventory tracking. The results of the survey, along with analysis of the implications for information security operations, are presented in this paper. Changes in technology, such as BYOD, IoT, wireless, virtual machines, and application containers, are contributing to changes in the effectiveness of host inventory controls.
CITATION STYLE
Kobezak, P., Marchany, R., Raymond, D., & Tront, J. (2018). Host inventory controls and systems survey: Evaluating the CIS critical security control one in higher education networks. In Proceedings of the Annual Hawaii International Conference on System Sciences (Vol. 2018-January, pp. 4742–4751). IEEE Computer Society. https://doi.org/10.24251/hicss.2018.597
Mendeley helps you to discover research relevant for your work.