Modelling Cyber-Security Experts' Decision Making Processes using Aggregation Operators
Simon Miller, Christian Wagner, Uwe Aickelin, Jonathan M. Garibaldi

TL;DR
This paper develops automated aggregation models using weighted averages and evolutionary algorithms to assist cyber-security experts in assessing complex systems by identifying vulnerabilities and key contributing factors.
Contribution
It introduces a novel approach combining weighted averages, ordered weighted averages, and evolutionary algorithms to model expert decision-making in cyber-security assessments.
Findings
Effective aggregation operators were created for security component ratings.
The method identified critical attack points and influential factors.
Automated tools can support expert assessments, improving efficiency.
Abstract
An important role carried out by cyber-security experts is the assessment of proposed computer systems, during their design stage. This task is fraught with difficulties and uncertainty, making the knowledge provided by human experts essential for successful assessment. Today, the increasing number of progressively complex systems has led to an urgent need to produce tools that support the expert-led process of system-security assessment. In this research, we use weighted averages (WAs) and ordered weighted averages (OWAs) with evolutionary algorithms (EAs) to create aggregation operators that model parts of the assessment process. We show how individual overall ratings for security components can be produced from ratings of their characteristics, and how these individual overall ratings can be aggregated to produce overall rankings of potential attacks on a system. As well as the…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsInformation and Cyber Security · Network Security and Intrusion Detection · Advanced Malware Detection Techniques
