Skip to main content

Posts

Showing posts with the label Resiliency Engineering

Mapping Resiliency Effects to MITRE ATT&CK Mitigations Examples

In cybersecurity, effects refer to the desired outcomes or impacts on an adversary's behavior or actions that a defender wants to achieve through various measures. These effects can be used to shape an adversary's behavior, disrupt their activities, or limit their ability to achieve their objectives. Effects are important in cybersecurity because they help defenders to better understand the potential impact of their decisions and actions, as well as evaluate the effectiveness of their defensive measures. By defining and measuring the effects of their actions, defenders can make more informed decisions and adjust their strategies to better mitigate risks and protect their systems from cyber threats. Additionally, using a standardized vocabulary to describe effects can help improve communication and collaboration among cybersecurity professionals, as well as enable more evidence-based claims and hypotheses about the effectiveness of different defensive measures. Using a standardi...

A Standardized Vocabulary for Evaluating the Impact of Cyber Defense Decisions on Adversary Behavior

I. Introduction A. Background on cyber mission assurance decisions and their impact on cyber adversary behavior Cybersecurity is a critical component of modern society as almost every facet of our daily lives relies on computer systems and the internet. However, with the increasing dependence on these systems, cyber adversaries have become more sophisticated in their tactics, techniques, and procedures (TTPs) for exploiting vulnerabilities and causing harm. Cyber mission assurance decisions refer to the choices made by defenders in mitigating and managing the risk of cyber attacks against their systems, networks, and data. The impact of cyber mission assurance decisions on cyber adversary behavior is significant, as these decisions can affect the adversary's ability to launch successful attacks, the effectiveness of their TTPs, and the overall threat landscape. Thus, it is essential to have a standardized vocabulary for evaluating the impact of these decisions on adversary behavior...

Building Cyber Resiliency: Goals, Constructs, and Risk Management Strategies in Practice and Future Directions

  Introduction A. Brief overview of cyber resiliency Cyber resiliency refers to an organization's ability to anticipate, withstand, recover, and adapt to cyber attacks and other cyber threats. It involves the implementation of measures that enable an organization to continue to operate despite the occurrence of a cyber attack or other type of cyber incident. These measures are designed to minimize the impact of a cyber attack on an organization's operations and to reduce the risk of future cyber attacks. B. Importance of cyber resiliency Cyber attacks have become a significant threat to organizations of all sizes and types. The cost of cyber attacks to businesses and governments is estimated to be in the billions of dollars each year. The potential consequences of a cyber attack can be severe, including loss of data, financial losses, damage to reputation, and even the disruption of critical infrastructure. Cyber resiliency is critical to reducing the risk of cyber attacks and ...