Search
 
Home| Join Our Mailing List| New Reviews| New Titles
Editor's Choice| Bestsellers| Textbooks| Book Series| Study Guides| E-Catalogues
  COMPUTER SCIENCE
  Artificial Intelligence
Database/ Information
Sciences

Decision Sciences
Digital Security
Fuzzy Logic
Machine Vision/ Pattern
Recognition

Neural Networks/ Networking
Parallel Processing/
Supercomputing

Software Engineering
Theoretical Computer Science
General
New Titles
December Bestsellers
Editor's Choice
Nobel Lectures
Textbooks
Recent Reviews
Book Series
Related Journals
  • International Journal of Semantic Computing (IJSC)
  • International Journal of Information Acquisition (IJIA)
  • Journal of Information & Knowledge Management (JIKM)
  • Computer Science Journals
  • New Mathematics and Natural Computation (NMNC)
  • Request for related catalogues
     
      PRODUCTS
      Journals
    eBooks
    Journals Archives
    eProceedings
     
      RESOURCES
      Print flyer
  • Full Version
  • Condensed Version
  • Recommend title
    For Librarians
    For Authors
    For Booksellers
    For Translation Rights About Us
    Contact Us
    How to Order News
     
    Bookmark and Share

    ROLE MINING IN BUSINESS
    Taming Role-Based Access Control Administration

    by Alessandro Colantonio (Bay31 GmbH, Switzerland), Roberto Di Pietro (Università di Roma Tre, Italy), & Alberto Ocello (CrossIdeas Srl, Italy)

    With continuous growth in the number of information objects and the users that can access these objects, ensuring that access is compliant with company policies has become a big challenge. Role-based Access Control (RBAC) — a policy-neutral access control model that serves as a bridge between academia and industry — is probably the most suitable security model for commercial applications.

    Interestingly, role design determines RBAC's cost. When there are hundreds or thousands of users within an organization, with individual functions and responsibilities to be accurately reflected in terms of access permissions, only a well-defined role engineering process allows for significant savings of time and money while protecting data and systems.

    Among role engineering approaches, searching through access control systems to find de facto roles embedded in existing permissions is attracting increasing interest. The focus falls on role mining, which is applied data mining techniques to automate — to the extent possible — the role design task.

    This book explores existing role mining algorithms and offers insights into the automated role design approaches proposed in the literature. Alongside theory, this book acts as a practical guide for using role mining tools when implementing RBAC. Besides a comprehensive survey of role mining techniques deeply rooted in academic research, this book also provides a summary of the role-based approach, access control concepts and describes a typical role engineering process.

    Among the pioneering works on role mining, this book blends business elements with data mining theory, and thus further extends the applications of role mining into business practice. This makes it a useful guide for all academics, IT and business professionals.

     
    Contents:
    • Fundamentals:
      • Managing Access Rights
      • Role-Based Access Control
      • Role Engineering
      • A Step-to-Step Methodology for Role Mining
      • The Hidden Structure of Roles
    • Pattern Identification in Users' Entitlements:
      • Enumerating Candidate Roles
      • Minimizing the Effort of Administering RBAC
    • Devising Meaningful Roles:
      • Measuring the Meaning of Roles
      • Visual Role Mining
    • Taming Role Mining Complexity:
      • Splitting Up the Mining Task
      • Stable Roles
      • Imputing Missing Grants
    • The Risk of Unmanageable Roles:
      • The Risk of Meaningless Roles
      • Ranking Users and Permissions
     
    Readership: Academic, industrial researchers, managers and practitioners (system and database administrators, programmers, business architects, CIO, CSO) from relevant industries, graduate students of computer science and computer engineering as well as readers with general interest in security.
     
     
    296pp    Pub. date: Feb 2012  
    ISBN:   978-981-4374-00-2
    981-4374-00-8
       US$99 / £65

     


     

    Imperial College Press  |  Global Publishing  |  Asia-Pacific Biotech News  |  Innovation Magazine
    Labcreations Co  |  Meeting Matters  |  National Academies Press

    Copyright © 2012 World Scientific Publishing Co. All rights reserved.
    Updated on 22 February 2012