An approach to predictively securing critical cloud infrastructures through probabilistic modeling
Satvik Jain, Arun Balaji Buduru, Anshuman Chhabra

TL;DR
This paper introduces a probabilistic Markov Decision Process model to predict and identify risky states in critical cloud infrastructures, enhancing cyber defense by incorporating human and operational behavior.
Contribution
It presents a novel stochastic approach using MDPs to incorporate human and operational behavior for predicting security risks in cloud systems.
Findings
The framework effectively predicts future risky states in cloud infrastructures.
Experimental results demonstrate high accuracy in identifying potential security breaches.
The approach outperforms traditional methods by including probabilistic human behavior.
Abstract
Cloud infrastructures are being increasingly utilized in critical infrastructures such as banking/finance, transportation and utility management. Sophistication and resources used in recent security breaches including those on critical infrastructures show that attackers are no longer limited by monetary/computational constraints. In fact, they may be aided by entities with large financial and human resources. Hence there is urgent need to develop predictive approaches for cyber defense to strengthen cloud infrastructures specifically utilized by critical infrastructures. Extensive research has been done in the past on applying techniques such as Game Theory, Machine Learning and Bayesian Networks among others for the predictive defense of critical infrastructures. However a major drawback of these approaches is that they do not incorporate probabilistic human behavior which limits…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCloud Data Security Solutions · Information and Cyber Security · Network Security and Intrusion Detection
