Threats targeting cyberspace are becoming more prominent and intelligent day by day. This inherently leads to a dire demand for continuous security validation and testing. Using this paper, we aim to provide a holistic and precise security analysis rating framework for organizations that increases the overall coherency of the outcomes of such testing. This scorecard is based on the security assessment performed following the globally accessible knowledge base of adversary tactics and techniques called the MITRE ATTACK matrix. The scorecard for an evaluation is generated by ingesting the security testing results into our framework, which provides an organizations overall risk assessment rating and the risk related to each of the different tactics from the ATTACK matrix.
翻译:针对网络空间的威胁日复一日变得更加突出和智能化,这必然导致对持续安全验证和测试的迫切需求。我们利用本文件,力求为提高测试结果总体一致性的组织提供一个整体和准确的安全分析评级框架。本记分卡是根据全球可获取的称为麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省麻省省省省省省省省省省省省省省省省省省省省省