| Angenommene Version Download ( PDF | 736kB) Nur für Mitarbeiter des Archivs |
Monitoring Access Reviews by Crowd Labelling
Groll, Sebastian
, Kern, Sascha
, Fuchs, Ludwig und Pernul, Günther
(2021)
Monitoring Access Reviews by Crowd Labelling.
In: Fischer-Hübner, Simone und Lambrinoudakis, Costas und Kotsis, Gabriele und Khalil, Ismail und Tjoa, A. Min, (eds.)
Trust, Privacy and Security in Digital Business.
Lecture Notes in Computer Science, 12927.
Springer, Cham, S. 3-17.
ISBN 978-3-030-86586-3, 978-3-030-86585-6.
Veröffentlichungsdatum dieses Volltextes: 28 Sep 2022 04:38
Buchkapitel
DOI zum Zitieren dieses Dokuments: 10.5283/epub.52906
Zusammenfassung
Access reviews, i.e. the periodical security audit of access privileges, are a basic compliance and IT-security requirement for medium- and large-scale organizations. Assessing the quality of the reviewer's decisions ex-post can help to analyse the effectiveness of the measure and to identify structural or organizational shortcomings. Yet, current studies merely focus on improving the ...
Access reviews, i.e. the periodical security audit of access privileges, are a basic compliance and IT-security requirement for medium- and large-scale organizations. Assessing the quality of the reviewer's decisions ex-post can help to analyse the effectiveness of the measure and to identify structural or organizational shortcomings. Yet, current studies merely focus on improving the decision-making process itself. This paper develops a method for assessing the decision quality of access reviews by applying a solution from the crowd sourcing research realm. In order to achieve this, the problem of assessing decision quality of access reviews is generalized. It is shown that the abstract problem can be mapped to the problem of assessing the quality of crowd tagging decisions. Subsequently, an applicable solution of this research area is applied to access reviews. Furthermore, the selected approach is optimized to meet the specific challenges of access review data.
Alternative Links zum Volltext
Beteiligte Einrichtungen
Details
| Dokumentenart | Buchkapitel | ||||
| ISBN | 978-3-030-86586-3, 978-3-030-86585-6 | ||||
| Buchtitel: | Trust, Privacy and Security in Digital Business | ||||
|---|---|---|---|---|---|
| Verlag: | Springer | ||||
| Ort der Veröffentlichung: | Cham | ||||
| Sonstige Reihe: | Lecture Notes in Computer Science | ||||
| Band: | 12927 | ||||
| Seitenbereich: | S. 3-17 | ||||
| Datum | 1 September 2021 | ||||
| Institutionen | Wirtschaftswissenschaften > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul) Informatik und Data Science > Fachbereich Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul) | ||||
| Identifikationsnummer |
| ||||
| Stichwörter / Keywords | Access Reviews; Decision Quality; Crowd Sourcing; Identity and Access Management; Compliance | ||||
| Dewey-Dezimal-Klassifikation | 000 Informatik, Informationswissenschaft, allgemeine Werke > 004 Informatik | ||||
| Status | Veröffentlicht | ||||
| Begutachtet | Ja, diese Version wurde begutachtet | ||||
| An der Universität Regensburg entstanden | Ja | ||||
| Dokumenten-ID | 52906 |
Downloadstatistik
Downloadstatistik