chapter 1 Security Architecture
Security Architecher8 is overall shows how to protectsystem from risk and whereand
when securitymeasure is should be applied
[Link] fifical physicaldevice based on caa based on security
protocol we decidewhoand whenaesses
Macro service client serviceservices eco system
Attribuits of Sec Arc
studythe relationship ofdifferentcomponents andhowthey dependin eachother
Determine securitycontrolbased on riskassessment goodpractice
The standrization of control
why we need inf security MakingDecision Accurate and timley Inf informationintegrity
inf system componentsthat worktogetherto produce and generate accurateinformation ex people
Devices application
Information systemcomponents clientserverare
based onbusinessmodel
Pildure i can beimplemented8 onetier
twotiers n tiers
Fff composed ofthreelevel presentation
ApplicationDatabase
Network tier physicalplatform
DBMS programsthatmanage
Database ex insert update det
It [Link] Iteipiain initis the components nowthis component
orgnized howthey connect and communicate together
Architecturesdesigns
Theprocess ofdefining and planning the systemarchitecture by choosing hw sw
defininginterface creating framework
components hw workstation server sensor
Sw operatingsystem database application
connetor Hw communication link router switch networt
Gw TCP IP HTTP
moder enterprise system Are computation communication
Arcproperties
Functional requirement specification
Non functional8 performance avaliblity safley
we can'tachive alltheproperties withhighpreformance someproperita can conflict security preforman
chapter 1
stage of Enterprise information system arch
Batch 60s 70s programming languagejopcontrol
on line transactionprocessing 80s networking database
integrated system 90s standard
webservices 00s standard for data and services
An informationsystem arch
is aspecification fordevelopmentof asystem composed ofHw sw components andconnectors
Information sec Arch
The security architecture of an information systemo is fundamental
to enforcing an organization's inf security policy's
see aran Describe sÉm'[Link]'si
y
security requirements as a
sec requirements [Link] Ft i t EE
GuidanceBring are specification orguidlines
security to oursystem y g ga
EE E I aefisFEn ti n
not
model protecting logical see touch code
[Link] iicalasss g c goats
ISA components
[Link]
protect can are
as is it
here
It
malware
and
I
[Link]
came [Link]
overturan
connection
application
s
Auditing procedure andtools In Three architectures areproposed
clientserver simplehigh servers
pressure
clientserverserver morecomplex
client
intenigent server high
cache preformance
peaceconnectionserver avalaning on
architecture tradeoffa nalyzed
for
performanceavailability security
attribuits
chapter 1
Arch analysis andevolution Thereareno features
security
revisedarchitecture addencdec addnewintelligentcache toclient
outorfangetemp
detect attack nonce
preventreplay
sea
number
Kia go
icmistradeoy
clientserverserver overallsensitivity analysis
availability performance [Link]
i
s
[Link]
security of
negativecorrelated tonumber server clientsa orlogic p
spoofing
s sa type example
li Eiengn Eai
rise i see
it
IIIII
whatattackpossibleinoption
mmattack between and
client but
s erver between
37
easytoadminstratortodetectedfast
andclientwillbe
server
securityrequirement Focuseonaccuracy oftemperaturereports
thetempreadings notbecorruptedbetatheyarriveattheclients
must
ftp
ft gym qfj
ewor
ng ti [Link]
Benefits of SA
security mangment privacyanddataprotection Build
trust Adapt tochange Improving Response
certificationof compliante efficent allocation resource
Security Engineering SE chapter 2
securityengineering isaboutbuildingsystemthatkeepworkingproperlyeven
when gowrongthatincludeswhenthereis
things
malice attackershackers errorhuman event
mistake misonance accidentsfailures unexpected
sothekeyis dependabilityunderattackorfailurenot
just attack
prevent
securityengineering focuseon itlookatthe
what entiresystemnot
just partandinvolves
one designing implementing testing adapting nowaygienentswork
scope and requirements
why we need a framework
cryptography
computer security to build a complex security system 8
Economics there are human policies attacker
Hwtamper resistance
8Buldingdependablesecuritysysteminvolves
[Link]
Applied psychology
organizational knowledge
legal knowledge to mange this complexity SE rely on an
SE is not onlyabout sw and hw alone organized framework whichsystematically
but is also invloves understanding the suitesthe design implementation andevtuationof
border context and environment in which security measure
system operate iii at me uaepiwiolwose
s [Link]
a w
skillsneeded
business process analysis
software engineering th
Evaluation testing [Link] icient
it also requires adversarial thinking
sept 4
study thepastattack theirdevelopment stages
understanding attackstrategies andoutcome policies goalsandobjective
what the securitysystem issupposed tobe achived
importance of security in CFificatsystem Ex protect data confidentiality Ensure
humansafetyandenvironment protection nuclearsafteysystem transactionintegrity restris unauthorized
onlinepaymentsystem
Economicinfrastructure access guratee system availability
personalprivacy medical record
crimeprevention car or homealarm the
policy reflect the stakeholder's
Business sector viability prepayment utility requirements and organizational goals
ast ay 2 62 w 0 s N
effectivesecurity withclear welldefinedpolicies
[Link] s inei Isi as mechanism implementation tools
software proadesmoreaspect ofdailylife Ex access control list crytographic
dalgorthims
failure ofsecurity
consequences
E E'Eisin Is IT
acrossvariousdomain
SEE antata
so se 1
chapter 2
The effectiveness of security system
Assurance ow depends synergistic relationship
on
thelevelof trust andconfidence that
mechanism actually achive intendedsecuritygoals [Link] mechanism assurance
I sin [Link] 100
owes
Securityengineering is an ongoing
Qi
act
Elation that motivateparties to In'[Link] Eii tiona
corretly or maliciously factor
understanding this incentive helpin
designing effective security strategies
Bank example8
Interactions between components core bank system8
4 I I Function Mantains customermaster files and
transactionjournals
these element interconnected changes mainthreats8 insider fraud
Is set
in oneeffecttheother [Link] [Link]
Defensemeasure
ex matching debits and credits
may11 2 [Link] policy typja Daal authorized forlargetransfer
Alarmfor unsualtransactionpatterns
911 Airport security
policyfailure knives allowed airpot Automated teller machines ATMs
mechanism issues screeingtoolsnot detectingall purpose customer authentication via card andPIN
Assuranceflaws overconfidence inscreeningmethod challenge outside andinside attack risk
Incentivefactor web phishing and loopholes exploited bycriminals
It Jess's
Msbl sit Iw
Applying frameworks
online Banking and mobileapps
Holistic view Address all four component usage routine transcation billpayment
and transfer
[Link]
I E 5t iatd
i emerging threats phonenumber hijacking
[Link] en IgEs by criminals
clear policies what weneedtoprotect high value messaging systems
effective mechanism that enforcethosepolicies Role Transferlarge sums tradesettur er
strong assurance issues credit letter
Frame tIrevent threats Attack byhigh tech criminals
9 I s threats
Bank BranchSecurity Business operational perpective
largeandsecurehousing did at pint user wussy
vulnerable tophysical theft
It law is my
a
fat
controlsystems
videomonitoring polices respones Alarms
pies In
system connected Challenge Risk
systemthatare secure still can fail
Example 2 AMilitaryBase applicant run
in unexpected way
w [Link] sp It w is well humanusers interat withthesystem in unsecureway
challenge8 prevent interception and clarifting roles and objective in security
s to 11 [Link] tgIf Pet Ence
of understanding who and
Intercept radio link similar tobluetooth what in securityinteractions
Glp St wut Idl II Risk of AmbiguousRoles
unauthorized access
lootpino
system
54.1 IT [Link].t Eality itintication
product or components need for clear def
ex smartcard Hw a phone laptop
product components Infrastructure gratifies wins
operatingsystem How is verficationperformance
plus application
bank health media app 3 key def of security system
plus staff Aphysical person or legal entity company
it personnel maintaing operating system government
plus internal user managementshows principate An entity participating in a security
plus external user customer sw system subject person roles Equipment communic
ambiguous Def confusing the act Indple
lead to error actingtogether
ex HW at a ow ow s my system 1 Rule setof function assumedovertime
II Swtuser Delegation acting onbehalf ofanother
[Link]
vendor focuse on the
firsttwoor three level ofsystem
hw protocols sw infrastructure
identity trust privacy
FOCY fencing
facts
Identity A correspondence between what is hacking
the name of two principle something asystem's rule permit but which
was unantipated and unwanted by it
designer
[Link] Wea6ponisin
M
Breakpolicies withoutbreaking enc
whicheffect system
protecting data Metadata
what is Vulnerability
Data content message record sensitive A property of asystem or environment
mitarata
logs at communication no I Ya w Insatin
spoke to whom insecure network
complexity
i It Entitleretationship
security failure
Breach of the system security policy
It a 4 55
[Link] Ea is c
result mil zto IsteEproni
challenge8
Difficult to be anonymous alone
need a crowd group astss [Link] statement of a
system protection's strategy
[Link] F ex in eachtransaction credit depits
Security target
Authenticity8 A detailed specificationof how
abrove that the message is freash not a
security policy is implemented
include 8 enc digital signture
inFelg got shf EÉghot been used to evaluate if system engineers meet
security requirement
[Link] IefEfect version of [Link]
where
situations risk cannot
E
I gEI among different saffey I state of being free from
o on
accidents
Function Facilitates evaluation across die Go so ebbo 58 aw
different implementations
É
Integrity 51J o WI r It a statement on how risk will be
maintained below acceptable level
vs
security Safley
security o w̅ [Link] 49811
mg puppy
together strong system
critical system or component
A system components whose failure could
cause an accident
Hazard and danger
ha external
[Link] gr
Danger probability that a hazard
results in an accident
Risk overall probability
of an accident
components
hazard level Danger 14,9
latency 1 oji out