Minimizing Organizational User Requirement while Meeting Security Constraints

dc.contributor.authorRoy, Arindam
dc.date.accessioned2023-05-18T05:22:03Z
dc.date.available2023-05-18T05:22:03Z
dc.date.issued2015-09
dc.description.abstractLarge systems are complex and typically need automatic configuration to be managed effectively. In any organization, numerous tasks have to be carried out by employees. However, due to security needs, it is not feasible to directly assign any existing task to the first available employee. In order to meet many additional security requirements, constraints such as separation of duty, cardinality and binding have to be taken into consideration. Meeting these requirements imposes extra burden on organizations, which, however, is unavoidable in order to ensure security. While a trivial way of ensuring security is to assign each user to a single task, business organizations would typically like to minimize their costs and keep staffing requirements to a minimum. To meet these contradictory goals, we define the problem of Cardinality Constrained-Mutually Exclusive Task Minimum User Problem (CMUP), which aims to find the minimum users that can carry out a set of tasks while satisfying the given security constraints. We show that the CMUP problem is equivalent to a constrained version of the weak chromatic number problem in hypergraphs, which is NP-hard. We, therefore, propose a greedy solution. Our experimental evaluation shows that the proposed algorithm is both efficient and effective.en_US
dc.identifier.urihttps://dl.acm.org/doi/abs/10.1145/2811269
dc.identifier.urihttp://dspace.bits-pilani.ac.in:8080/xmlui/handle/123456789/10909
dc.language.isoenen_US
dc.publisherACM Digital Libraryen_US
dc.subjectManagementen_US
dc.subjectSecurityen_US
dc.titleMinimizing Organizational User Requirement while Meeting Security Constraintsen_US
dc.typeArticleen_US

Files

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: