Authors:
Hirokazu Hasegawa
1
and
Hiroki Takakura
2
Affiliations:
1
Information Security Office, Nagoya University, Nagoya, Japan
;
2
Center for Cybersecurity Research and Development, National Institute of Informatics, Tokyo, Japan
Keyword(s):
Cyber Security, Targeted Attacks, Network Separation, Access Control, Telecommuting, Working from Home.
Abstract:
Recently, cyber attacks have been sophisticated and cause serious damages. As one of the solutions for mitigating the damages, the network separation and fine granularity of access controls are effective against attacks. However, the COVID-19 changes human work style, and telecommuting comes to be generally. It may give many chances to attackers for invading the organization’s internal network by infecting user’s vulnerable home terminals, which are out of control by the organization. To ensure the security of organizations, we propose a dynamic access control system based on the situations of users. The system evaluates communications based on the user’s risk and the importance of resources in destination terminals. When a user connects to the organization network from the outside, the system dynamically changes the access controls according to the evaluation results. The such situation requires stricter access controls than usual ones. For example, the communication by the high-ris
k user and the communication to servers storing important resources are restricted. By applying such dynamic access controls, the system enables us to ensure our network security with maintaining the convenience of users telecommuting.
(More)