Skip to main navigation Skip to search Skip to main content

Optimal security investments in a prevention and detection game

Carlos Barreto, Alvaro A. Cardenas, Alain Bensoussan

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

Abstract

Most security defenses can be breached by motivated adversaries, therefore in addition to attack-prevention technologies, firms investing in cyber-security for their information technology infrastructure need to consider attack-detection and restoration tools to detect intruders, and restore their system to a safe condition. Attackers face similar investment alternatives; they need to invest resources to finding vulnerabilities in a protected system, and once the protection has been broken, they need to invest in the infrastructure necessary to exploit these attacks and maintain stealthy persistence in the compromised infrastructure. We model this dual considerations as a dynamic programming problem between attackers and defenders and then study the Nash equilibrium of this game. Our goal is to find models and alternatives that can help us understand optimal security investments in prevention and detection against advanced rational adversaries.
Original languageEnglish
Title of host publicationHoTSoS 2017 - Proceedings of the Hot Topics in Science of Security
Subtitle of host publicationSymposium and Bootcamp
PublisherAssociation for Computing Machinery
Pages24-34
ISBN (Print)978-1-4503-5274-1
DOIs
Publication statusPublished - Apr 2017
Externally publishedYes
Event4th Annual Symposium and Bootcamp on Hot Topics in the Science of Security, HoTSoS 2017 - Hanover, United States
Duration: 4 Apr 20175 Apr 2017
http://hot-sos.com

Conference

Conference4th Annual Symposium and Bootcamp on Hot Topics in the Science of Security, HoTSoS 2017
PlaceUnited States
CityHanover
Period4/04/175/04/17
Internet address

UN SDGs

This output contributes to the following UN Sustainable Development Goals (SDGs)

  1. SDG 9 - Industry, Innovation, and Infrastructure
    SDG 9 Industry, Innovation, and Infrastructure

Research Keywords

  • Dynamic programming
  • Game theory
  • Security investments

Fingerprint

Dive into the research topics of 'Optimal security investments in a prevention and detection game'. Together they form a unique fingerprint.

Cite this