Applying the DoD goal security architecture as a methodology for the development of system and enterprise security architectures
Tim Lowman, D. Mosier
Abstract
Tim Lowman, D. Mosier
Abstract
Many organizations have a need to conduct security assessments and develop security architectures. It was recognized that a structured approach is needed. The Department of Defense Goal Security Architecture (DGSA) was already developed through considerable effort by knowledgeable security professionals. Our approach was to tailor the DGSA to fit many enterprise information system security profiles and meet the requirements of multiple organizations. The paper shows how the DGSA was applied across multiple program types, and demonstrates how it can be used for a wide variety of security tasks.
OpenAlex reports 2 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
Many organizations have a need to conduct security assessments and develop security architectures. It was recognized that a structured approach is needed. The Department of Defense Goal Security Architecture (DGSA) was already developed through considerable effort by knowledgeable security professionals. Our approach was to tailor the DGSA to fit many enterprise information system security profiles and meet the requirements of multiple organizations. The paper shows how the DGSA was applied across multiple program types, and demonstrates how it can be used for a wide variety of security tasks.
Key concepts: Enterprise information security architecture, Security information and event management, Computer science, Variety (cybernetics), Software security assurance, Computer security model, Sherwood Applied Business Security Architecture, Computer security