Case study: ITU-T recommendation X.805 applied to an enterprise environment-banking

David Ramirez · Bell Labs Technical Journal · 2007

Increased levels of complexity within the technology environments of financial entities hinder the appropriate development and deployment of security policies. Security professionals often rely on automated scanning tools to find security vulnerabilities. However, by not conducting a deeper investigation, they can miss the real security problems that lie hidden beneath the surface. The Bell Labs Security Framework, standardized as International Telecommunication Union, Telecommunication Standardization Sector (ITU-T) Recommendation X.805, provides the basis required to undertake a security analysis of an enterprise environment. The author will present how ITU-T Recommendation X.805 can be applied to a banking environment. The proposed case study focuses on a subset of the ITU-T X.805 framework, providing a systematic view of potential security problems within the banking environment. The analysis of a particular enterprise using the framework approach allows security experts to understand and plan mitigation strategies. Changes to the security profile of a particular asset in an environment can be analyzed to understand new vulnerabilities or threats within the environment. © 2007 Alcatel-Lucent.

Read the paper · More papers on PaperTik