Agile Applied Research for Cybersecurity: Creating Authoritative, Actionable Knowledge When Speed Matters

نویسندگان

  • Rick Linger
  • Luanne Burns Goldrich
چکیده

Securing information systems from attack and compromise is a problem of massive scope and global scale. Traditional, long-term research provides a deep understanding of the foundations for protecting systems, networks, and infrastructures. But sponsors often need applied research that will create results for immediate application to unforeseen cybersecurity events. The Agile Research process is a new approach to provide this type of rapid, authoritative, applied research. It is designed to be fast, transparent, and iterative, with each iteration producing results that can be applied quickly. The idea is to engage subject-matter experts fast enough to make a difference. Agile Research requires new levels of collaboration and performance, plus adaptive organizational structures that support this new way of working. In addition to its application in Government, Agile Research is being employed in academic settings, and is influencing how research requirements and researchers are identified and matched, and research traineeship. 1. The Need for Agile Research Traditional, long-term research often involves extensive requirements definitions, comprehensive proposals, competitive awards, distributed organizational structures, complex funding protocols, and long-term performance that can extend for years or even decades [1]. These processes are embedded in the national research and development infrastructure, as embodied, for example, in Defense Advanced Research Projects Agency (DARPA), National Science Foundation (NSF), National Institutes of Health (NIH), Department of Energy (DOE), and other Government organizations. When the scope and scale of research requirements are large, as, for example, with autonomous vehicles or alternative energy, these traditional processes and their management and review procedures are essential to maintaining control across collaborating organizations and reducing risks of overruns and nonperformance. As such, they serve a vital role in conducting large-scale, long-term research projects to achieve national goals. These broad national research goals will always be with us. But events occur in cybersecurity areas that require fast and decisive responses in order to protect national well-being and even survival. These responses would benefit from rapid and authoritative analysis by the best minds and organizations. The traditional research infrastructure is ill-suited for this level of fast engagement and immediate application, leaving a pressing need for institutional innovations in the research infrastructure. An Agile Research process is being developed and implemented to address the need for fast and effective exploratory applied research in situations where speed is an overarching requirement. When attempts have been made to apply traditional methods in these situations, the research results, no matter how comprehensive and valuable, are often too late to be of use in the current cybersecurity event, and wind up as shelfware. Wells and Smyth [2] presented an agile approach to developing research methodology, arguing that qualitative research is emergent (which it is), so instead of thinking about the research methods a priori, the re5958 Proceedings of the 50th Hawaii International Conference on System Sciences | 2017 URI: http://hdl.handle.net/10125/41883 ISBN: 978-0-9981331-0-2

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Embedded R&D for Cybersecurity in an Operational Environment

This paper describes a paradigm shift from how cybersecurity research and development (R&D) is traditionally applied in an operational environment. The methodology is referred to as embedded R&D (eR&D); cybersecurity researchers are tightly coupled with the operational stakeholders. This tight-knit relationship allows the researchers to elicit R&D requirements from the stakeholders seamlessly o...

متن کامل

Identify enablers of agility and agile modeling strategy with neural network approach

The electronic industry suffers a rapid changing and highly rival environment. Thus, firms have an essential need to strive for acquiring the competitive advantage. Strategy Organizational Agility (SOA) is a tool which enables to assist firms to attain the competitive advantage. Therefore, this study benchmarks the core competencies from a case study within the supply chain network and establis...

متن کامل

Supply chain network design problem for a new market opportunity in an agile manufacturing system

The characteristics of today's competitive environment, such as the speed with which products are designed, manufactured, and distributed, and the need for higher responsiveness and lower operational cost, are forcing companies to search for innovative ways to do business. The concept of agile manufacturing has been proposed in response to these challenges for companies. This ...

متن کامل

Cybersecurity Through Secure Software Development

Reports about serious vulnerabilities in critical IT components have triggered increased focus on cybersecurity worldwide. Among the many initiatives to strengthen cybersecurity it is common to see the establishment and strengthening of CERTs and other centers for cybersecurity. On the other hand, strengthening education in IT security and applying methods for secure systems development are met...

متن کامل

کاربرد ابزارهای تحلیلگر داده کاوی و متن کاوی در چابکی سازمانهای مراقبت بهداشتی و درمانی

Introduction: The word agility identified the speed and the power of responses during facing with organization internal and external matters. The health care organizations must be agile like any other organization in today fast speeding world, because being agile is an additional advantage in the competitive world. In this paper the organizations' agility, data mining, text mining, and the role...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2016