Show simple item record

dc.contributor.advisorWeitzner, Daniel
dc.contributor.advisorReynolds, Taylor
dc.contributor.authorLewke, Damien
dc.date.accessioned2023-07-31T19:55:05Z
dc.date.available2023-07-31T19:55:05Z
dc.date.issued2023-06
dc.date.submitted2023-06-23T19:55:06.234Z
dc.identifier.urihttps://hdl.handle.net/1721.1/151640
dc.description.abstractThis paper proposes a novel cloud security benchmarking framework and scoring system to improve cyber risk management. Cyber risk management is challenging and has become even more difficult as organizations digitally transform their business and IT from on-premises environments to cloud infrastructure. Threats proliferate as organizations’ attack surfaces expand due to shadow IT, software supply chain security, outsourced networking, and virtualization. Existing cyber risk management frameworks and controls are too exhaustive or generic and provide no means for organizations to assess their cyber risk against their peers. The MIT-IBM CloudSec 16 developed in this paper is a new security benchmarking framework and scoring system built specifically for cloud deployments in the financial service sector. When paired with MIT’s SCRAM secure computation platform, the MIT-IBM CloudSec 16 can provide an overview of cloud security in the financial service sector and enable organizations to and remediate areas of relative weakness.
dc.publisherMassachusetts Institute of Technology
dc.rightsIn Copyright - Educational Use Permitted
dc.rightsCopyright retained by author(s)
dc.rights.urihttps://rightsstatements.org/page/InC-EDU/1.0/
dc.titleThe MIT-IBM CloudSec 16: A Cloud Cybersecurity Benchmarking Framework
dc.typeThesis
dc.description.degreeS.M.
dc.contributor.departmentSystem Design and Management Program.
mit.thesis.degreeMaster
thesis.degree.nameMaster of Science in Engineering and Management


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record