SBE: Small: Collaborative: Modeling Insider Threat Behavior in Financial Institutions: Large Scale Data Analysis

SBE:小型:协作:金融机构内部威胁行为建模:大规模数据分析

基本信息

  • 批准号:
    1419856
  • 负责人:
  • 金额:
    $ 34.23万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2014
  • 资助国家:
    美国
  • 起止时间:
    2014-08-15 至 2017-03-31
  • 项目状态:
    已结题

项目摘要

Insiders pose substantial threats to an organization, regardless of whether they act intentionally or accidentally. Because they usually possess elevated privileges and have skills, knowledge, resources, access and motives regarding internal systems and data, insiders can easily circumvent security countermeasures, steal valuable data, and cause damage. Perimeter and host-based countermeasures like firewalls, intrusion detection systems, and antivirus software are ineffective in preventing and detecting insider threats. Despite the availability of abundant anecdotal information regarding insider threats, research relying on field data to advance understanding of such threats is still lacking. This proposal presents a theoretically driven approach to investigate the risk of insider threat within financial institutions. It will utilize large scale field data from two financial institutions to provide comparison and improve the generalizability of results.Intellectual Merit: The proposed research will use criminology theories and extend them to the domain of insider threat. It will use both objective log data from the enterprise single sign-on (eSSO) systems and subjective data through surveys and focus groups to understand perceptual characteristics of applications as well as perceptions of employees regarding attractiveness of targets. Thus, this research will be among the first that takes both the technical and human aspects into consideration in investigating victimization risk and attack proneness associated with information assets within financial institutions. In essence, the proposed study will utilize multi methods and multi-source data to establish how information resources can be better protected from misuse and abuse of access privileges. The study will initiate a new perspective for analyzing existing behavioral log data to improve the practice of risk management, which may have a transformative impact in terms of mitigating risks from different user groups and informing interventions to deal with the insider threat problem. Broader Impact: This multi-disciplinary collaborative project will deepen understanding of insider threat behavior in the context of financial institutions. A PhD student will be funded at each university and the research will result in a few Masters' independent studies in this area as well. The findings of this proposal will be disseminated among the law enforcement task forces, as well as banking organizations. The channels to be employed include workshops with the local InfraGuard program in collaboration with the regional FBI office. The outcomes of the proposal will not only provide an applied understanding of insider threat, but also important implications for risk management applications. It is important to note that the President's Critical Infrastructure Protection Board identified the banking and finance sector as one of the critical infrastructures to be secured. This proposal will help in this regard by having an impact on public policy with respect to regulations for financial institutions. The potential reduction in financial crime as a result would have significant societal benefits.
内部人士对组织构成了重大威胁,无论他们是故意还是意外采取行动。 由于它们通常具有高度的特权,并且具有有关内部系统和数据的技能,知识,资源,访问和动机,因此内部人员可以轻松规避安全对策,窃取有价值的数据并造成损害。防火墙,入侵检测系统和防病毒软件等外围和基于主机的对策在防止和检测内部威胁方面无效。 尽管有有关内部威胁的大量轶事信息,但仍缺乏依靠现场数据来提高对此类威胁的理解的研究。 该提案提出了一种理论上驱动的方法,以调查金融机构内部威胁的风险。它将利用来自两个金融机构的大规模现场数据来提供比较并提高结果的普遍性。智能优点:拟议的研究将使用犯罪学理论,并将其扩展到内幕威胁的领域。 它将通过调查和焦点小组使用企业单登录系统(ESSO)系统和主观数据的客观日志数据,以了解应用程序的感知特征以及员工对目标吸引力的感知。因此,这项研究将是第一个将技术和人类方面同时考虑到与金融机构中信息资产相关的受害风险和攻击性倾向的考虑的一项。 从本质上讲,拟议的研究将利用多种方法和多源数据来确定如何更好地保护信息资源免受滥用和滥用访问特权的保护。该研究将启动一种新的观点,用于分析现有的行为日志数据以改善风险管理实践,这在减轻不同用户群体的风险方面可能会产生变革性的影响,并告知干预措施以处理内部威胁问题。更广泛的影响:这个多学科的合作项目将在金融机构的背景下加深对内部威胁行为的了解。 一名博士生将在每所大学提供资金,该研究也将在该领域进行一些硕士学位的独立研究。该提案的发现将在执法工作队和银行组织之间传播。将要使用的渠道包括与当地的Infraguard计划与区域FBI办公室合作的研讨会。该提案的结果不仅将提供对内部威胁的应用,而且还将对风险管理应用程序产生重要影响。 重要的是要注意,总统的关键基础设施保护委员会将银行和财务部门确定为要确保的关键基础设施之一。 该提案将通过对金融机构的法规产生影响,在这方面有助于这方面。因此,金融犯罪的潜在减少将带来重大的社会利益。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Raghav Rao其他文献

Security in grid computing: A review and synthesis
网格计算中的安全性:回顾与综合
  • DOI:
  • 发表时间:
    2008
  • 期刊:
  • 影响因子:
    7.5
  • 作者:
    E. Cody;R. Sharman;Raghav Rao;S. Upadhyaya
  • 通讯作者:
    S. Upadhyaya
Electronic Banking and Information Assurance Issues: Surveys and Synthesis
电子银行和信息保障问题:调查与综合
  • DOI:
    10.4018/joeuc.2004070101
  • 发表时间:
    2004
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Manish Gupta;Raghav Rao;S. Upadhyaya
  • 通讯作者:
    S. Upadhyaya

Raghav Rao的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Raghav Rao', 18)}}的其他基金

Workshop on Information Systems for Disaster Response Management (WIS-DRM); San Antonio, Texas; Part 1 Virtual, and Part 2 19-20 June 2023
灾害响应管理信息系统讲习班(WIS-DRM);
  • 批准号:
    2240347
  • 财政年份:
    2023
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
DDRIG in DRMS: An Investigation of Harm Perceptions from Communications on Social Media about COVID Vaccines
DRMS 中的 DDRIG:社交媒体传播中有关新冠疫苗的危害认知调查
  • 批准号:
    2149321
  • 财政年份:
    2022
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
SCC-PG: Building Resilience during Disasters through Digital Inclusion of Older Adults: A Smart and Connected Community Research Initiative
SCC-PG:通过老年人的数字包容性增强灾难期间的复原力:智能互联社区研究计划
  • 批准号:
    2126504
  • 财政年份:
    2021
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
Travel: Secure Knowledge Management Workshop
旅行:安全知识管理研讨会
  • 批准号:
    2133980
  • 财政年份:
    2021
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
Collaborative Research: Information Technology and Emergency Response Improvisation: An Investigation
合作研究:信息技术与应急响应即兴:调查
  • 批准号:
    2020252
  • 财政年份:
    2020
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Continuing Grant
NSF Student Travel Grant for 2017 Secure Knowledge Management Workshop (SKM)
2017 年安全知识管理研讨会 (SKM) 的 NSF 学生旅行补助金
  • 批准号:
    1742661
  • 财政年份:
    2017
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
SBE: Small: Collaborative: Modeling Insider Threat Behavior in Financial Institutions: Large Scale Data Analysis
SBE:小型:协作:金融机构内部威胁行为建模:大规模数据分析
  • 批准号:
    1724725
  • 财政年份:
    2016
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
RAPID: Collaborative Research: Employees' Response to OPM Data Breaches: Decision Making in the Context of Anxiety and Fatigue
RAPID:协作研究:员工对 OPM 数据泄露的反应:焦虑和疲劳背景下的决策
  • 批准号:
    1651060
  • 财政年份:
    2016
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
EAGER: An Investigation of the Propagation of Error-Resistant and Error-Prone Messages Over Large-Scale Information Networks
EAGER:大规模信息网络上防错和易错消息传播的研究
  • 批准号:
    1651475
  • 财政年份:
    2016
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
RAPID: Collaborative Research: Employees' Response to OPM Data Breaches: Decision Making in the Context of Anxiety and Fatigue
RAPID:协作研究:员工对 OPM 数据泄露的反应:焦虑和疲劳背景下的决策
  • 批准号:
    1554373
  • 财政年份:
    2015
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant

相似国自然基金

基于超宽频技术的小微型无人系统集群协作关键技术研究与应用
  • 批准号:
  • 批准年份:
    2020
  • 资助金额:
    57 万元
  • 项目类别:
    面上项目
异构云小蜂窝网络中基于协作预编码的干扰协调技术研究
  • 批准号:
    61661005
  • 批准年份:
    2016
  • 资助金额:
    30.0 万元
  • 项目类别:
    地区科学基金项目
密集小基站系统中的新型接入理论与技术研究
  • 批准号:
    61301143
  • 批准年份:
    2013
  • 资助金额:
    24.0 万元
  • 项目类别:
    青年科学基金项目
ScFVCD3-9R负载Bcl-6靶向小干扰RNA治疗EAMG的试验研究
  • 批准号:
    81072465
  • 批准年份:
    2010
  • 资助金额:
    31.0 万元
  • 项目类别:
    面上项目
基于小世界网络的传感器网络研究
  • 批准号:
    60472059
  • 批准年份:
    2004
  • 资助金额:
    21.0 万元
  • 项目类别:
    面上项目

相似海外基金

SBE TWC: Small: Collaborative: Pocket Security - Smartphone Cybercrime in the Wild
SBE TWC:小型:协作:袖珍安全 - 智能手机野外网络犯罪
  • 批准号:
    1903219
  • 财政年份:
    2018
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
SBE TWC: Small: Collaborative: Pocket Security - Smartphone Cybercrime in the Wild
SBE TWC:小型:协作:袖珍安全 - 智能手机野外网络犯罪
  • 批准号:
    1617301
  • 财政年份:
    2016
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
SBE: Small: Collaborative: Modeling Insider Threat Behavior in Financial Institutions: Large Scale Data Analysis
SBE:小型:协作:金融机构内部威胁行为建模:大规模数据分析
  • 批准号:
    1724725
  • 财政年份:
    2016
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
SBE TWC: Small: Collaborative: Pocket Security - Smartphone Cybercrime in the Wild
SBE TWC:小型:协作:袖珍安全 - 智能手机野外网络犯罪
  • 批准号:
    1619084
  • 财政年份:
    2016
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
SBE: Small: Collaborative: Modeling Insider Threat Behavior in Financial Institutions: Large Scale Data Analysis
SBE:小型:协作:金融机构内部威胁行为建模:大规模数据分析
  • 批准号:
    1420758
  • 财政年份:
    2014
  • 资助金额:
    $ 34.23万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了