posted by system || 3305 views || tracked by 1 users: [display]

CSAW 2014 : Second International Workshop On Cloud Security Auditing

FacebookTwitterLinkedInGoogle

Link: http://www.csaworkshop.org
 
When Jun 27, 2014 - Jul 2, 2014
Where Anchorage, Alaska, USA
Submission Deadline Mar 29, 2014
Categories    security
 

Call For Papers

Building on the success of the first workshop and its alignment within the IEEE World Congress on Services, the Cloud Security Auditing Workshop provides a unique setting for the exchange of research and development practices for the detection, prevention, mitigation,and reporting of security attacks. The concepts surrounding security auditing cover issues related to cloud architectures, tenant services and resources, service interactions, privacy, and standards, where meta-information must be captured, shared, and monitored across the cloud.

The workshop solicits original papers on increasing cloud resiliency and trustworthiness through security auditing as applied to various cloud models, layers, services, resources, and application domains. Though not limited to these topics, contributions can address issues such as cloud mashing, technologies for capturing security relevant events, service level agreements, session management, languages and protocols, real-time analysis, streaming and manipulation of big cloud data, and information assurance standards application. The workshop also welcomes survey papers and practitioner experiences.

Topics of interest to CSAW 2014 include, but are not limited to:

List of Topics

Cloud mashing security issues

Languages and protocols for specifying, composing, analyzing, and sharing security-relevant, distributed logs of audit data from a cloud-wide perspective

Cloud security, threat modeling, and analysis, including centralized/distributed attack detection and prediction/prevention algorithms based on audited information

Automated tools for capturing, integrating, and analyzing cloud audit data

Algorithms and protocols for audit data stream delivery, manipulation, and analysis for big cloud audit data

Access control and information flow control models for disclosure and modification of sensitive cloud audit data

Methods for expressing and representing the cloud infrastructure and configuration to influence logging and monitoring processes

Information assurance (authenticity, integrity, confidentiality and availability) of cloud audit data, including security and privacy policies and compliance with security controls such as NIST sp800-53 and Cloud Security Alliance guidance 3.0

Service-level agreements that formalize and guarantee logging and analysis capabilities

Session management, tracking, and alerting of vulnerabilities and threats

Related Resources

ICCT-IEEE 2017   17th IEEE International Conference on Communication Technology(ICCT 2017)
ACISP 2017   Australasian Conference on Information Security and Privacy
MobiSec 2017   Special Issue on Mobile Systems, Mobile Networks and Mobile Cloud: Security, Privacy and Digital Forensics
BDCloud 2017   The 7th IEEE International Conference on Big Data and Cloud Computing
ICMWT 2017   4th iCatse Conference on Mobile and Wireless Technology
MSPN 2017   International Conference on Mobile, Secure and Programmable Networking
USENIX Security 2017   USENIX Security '17
EuropeanSeC 2017   2017 European Security Conference
AVSS 2017   14-th IEEE International Conference on Advanced Video and Signal-Based Surveillance
SECURWARE 2017   The Eleventh International Conference on Emerging Security Information, Systems and Technologies