Gateway to Think Tanks
来源类型 | Report |
规范类型 | 报告 |
DOI | https://doi.org/10.7249/RR2703 |
来源ID | RR-2703-AF |
Measuring Cybersecurity and Cyber Resiliency | |
Don Snyder; Lauren A. Mayer; Guy Weichenberg; Danielle C. Tarraf; Bernard Fox; Myron Hura; Suzanne Genc; Jonathan W. Welburn | |
发表日期 | 2020-03-26 |
出版年 | 2020 |
语种 | 英语 |
结论 |
No single set of metrics is well suited to all decisionmakers
There is a certain level of uncertainty in cyber metrics
Measures are only as good as the measurers
|
摘要 | This report presents a framework for the development of metrics—and a method for scoring them—that indicates how well a U.S. Air Force mission or system is expected to perform in a cyber-contested environment. These metrics are developed so as to be suitable for informing acquisition decisions during all stages of weapon systems' life cycles. There are two types of cyber metrics: working-level metrics to counter an adversary's cyber operations and institutional-level metrics to capture any cyber-related organizational deficiencies. ,The cyber environment is dynamic and complex, the threat is ubiquitous (in peacetime and wartime, deployed and at home), and no set of underlying "laws of nature" govern the cyber realm. A fruitful approach is to define cyber metrics in the context of a two-player cyber game between Red (the attacking side) and Blue (the side trying to ensure a mission). ,The framework helps, in part, to reveal where strengths in one area might partially offset weaknesses in another. Additional discussions focus on how those metrics can be scored in ways that are useful for supporting decisions. The metrics are aimed at supporting program offices and authorizing officials in risk management and in defining requirements, both operational requirements as well as the more detailed requirements for system design used in contracts, the latter often referred to as derived requirements. |
目录 |
|
主题 | Cyber Warfare ; Military Information Technology Systems |
URL | https://www.rand.org/pubs/research_reports/RR2703.html |
来源智库 | RAND Corporation (United States) |
引用统计 | |
资源类型 | 智库出版物 |
条目标识符 | http://119.78.100.153/handle/2XGU8XDN/524040 |
推荐引用方式 GB/T 7714 | Don Snyder,Lauren A. Mayer,Guy Weichenberg,et al. Measuring Cybersecurity and Cyber Resiliency. 2020. |
条目包含的文件 | ||||||
文件名称/大小 | 资源类型 | 版本类型 | 开放类型 | 使用许可 | ||
RAND_RR2703.pdf(538KB) | 智库出版物 | 限制开放 | CC BY-NC-SA | 浏览 | ||
x1585226332984.jpg.p(1KB) | 智库出版物 | 限制开放 | CC BY-NC-SA | 浏览 |
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。