Loading…
FloCon 2022 has ended
Tuesday, January 11 • 12:00pm - 12:30pm
Improving Cyber Resiliency through Microsegmentation Policy Optimization

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.
This talk examines an approach for improving cyber resilience through the synthesis of optimal microsegmentation policy for a network. By leveraging microsegmentation security architecture, we can reason about fine-grained policy rules that enforce access for given combinations of source address, destination address, destination port, and protocol. Our approach determines microsegmentation policy rules that limit adversarial movement within a network according to assumed attack scenarios and mission availability needs. For this problem, we formulate a novel optimization objective function that balances cyberattack risks against accessibility to critical network resources. Given the application of a particular set of policy rules as a candidate optimal solution, this objective function estimates the adversary effort for carrying out a particular attack scenario, which it balances against the extent to which the solution restricts access to mission-critical services. We then apply artificial intelligence techniques (evolutionary programming) to learn microsegmentation policy rules that optimize this objective function.

Attendees Will Learn:
The attendees will learn a novel approach for formulating optimal access-control policy that allows a tunable tradeoff between thwarting adversarial scenarios and maintaining mission-critical network access.

Speakers
avatar for Steven Noel

Steven Noel

Principal Cybersecurity Scientist, The MITRE Corporation
Dr. Steven Noel is a Principal Cybersecurity Scientist in MITRE’s Cyber Solutions Innovation Center. For 20+ years, he has led multi-disciplinary teams conducting advanced research in cybersecurity. Areas of particular focus include cyber situational understanding, optimal network... Read More →



Tuesday January 11, 2022 12:00pm - 12:30pm EST