Security Models

Discuss examples of security models including the following:

  • Bell-LaPadula

  • Biba

  • Clark-Wilson

  • Access control lists

A security model is a prescriptive paradigm. At first, it's someone's best guess at formulating a plan to make something more secure. It gets tested, refined, used, and maybe abandoned as the “things” you're trying to secure and the resources you have to do so change. Nevertheless it is important to know about them. They may be in place where you work, or they may lead you to a better understanding of your job. Their study will also teach you the vocabulary of modeling secure systems. The following security models are a few of the better-known ones:

  • Bell-LaPadula

  • Biba

  • Clark-Wilson

  • Access control lists

NOTE

The ICS2 Approach ...

Get CISSP Training Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.