Searching for just a few words should be enough to get started. If you need to make more complex queries, use the tips below to guide you.
Issue title: Security and High Performance Computing Systems
Subtitle: Literature review, analysis methodology and challenge domains
Guest editors: Luca Spalazzi and Luca Viganò
Article type: Research Article
Authors: Bella, Giampaoloa; * | Curzon, Paulb | Lenzini, Gabrielec
Affiliations: [a] Dipartimento di Matematica e Informatica, Università di Catania, Catania, Italy. E-mail: giamp@dmi.unict.it | [b] School of Electronic Engineering and Computer Science, Queen Mary University of London, London, UK. E-mail: p.curzon@qmul.ac.uk | [c] Interdisciplinary Centre for Security, Reliability and Trust, University of Luxembourg, Luxembourg. E-mail: gabriele.lenzini@uni.lu
Correspondence: [*] Corresponding author: Giampaolo Bella, Dipartimento di Matematica e Informatica, Università di Catania, Catania, Italy. E-mail: giamp@dmi.unict.it.
Abstract: The security and privacy of the data that users transmit, more or less deliberately, to modern services is an open problem. It is not solely limited to the actual Internet traversal, a sub-problem vastly tackled by consolidated research in security protocol design and analysis. By contrast, it entails much broader dimensions pertaining to how users approach technology and understand the risks for the data they enter. For example, users may express cautious or distracted personas depending on the service and the point in time; further, pre-established paths of practice may lead them to neglect the intrusive privacy policy offered by a service, or the outdated protections adopted by another. The approach that sees the service security and privacy problem as a socio-technical one needs consolidation. With this motivation, the article makes a threefold contribution. It reviews the existing literature on service security and privacy, especially from the socio-technical standpoint. Further, it outlines a general research methodology aimed at layering the problem appropriately, at suggesting how to position existing findings, and ultimately at indicating where a transdisciplinary task force may fit in. The article concludes with the description of the three challenge domains of services whose security and privacy we deem open socio-technical problems, not only due to their inherent facets but also to their huge number of users.
Keywords: Security ceremony, concertina, cloud, cybersecurity, modelling, analysis, verification, awareness
DOI: 10.3233/JCS-150536
Journal: Journal of Computer Security, vol. 23, no. 5, pp. 563-585, 2015
IOS Press, Inc.
6751 Tepper Drive
Clifton, VA 20124
USA
Tel: +1 703 830 6300
Fax: +1 703 830 2300
sales@iospress.com
For editorial issues, like the status of your submitted paper or proposals, write to editorial@iospress.nl
IOS Press
Nieuwe Hemweg 6B
1013 BG Amsterdam
The Netherlands
Tel: +31 20 688 3355
Fax: +31 20 687 0091
info@iospress.nl
For editorial issues, permissions, book requests, submissions and proceedings, contact the Amsterdam office info@iospress.nl
Inspirees International (China Office)
Ciyunsi Beili 207(CapitaLand), Bld 1, 7-901
100025, Beijing
China
Free service line: 400 661 8717
Fax: +86 10 8446 7947
china@iospress.cn
For editorial issues, like the status of your submitted paper or proposals, write to editorial@iospress.nl
如果您在出版方面需要帮助或有任何建, 件至: editorial@iospress.nl