scholarly journals Framework for the Comparison and Selection of Schemes for Multi-Factor Authentication

2021 ◽  
Vol 24 (1) ◽  
Author(s):  
Ignacio Velásquez

Authentication is the process of verifying a user’s identity for them to access a system’s resources. An authentication factor is a piece of information used for this authentication. Three well-known groups of authentication factors exist: knowledge-based (what you know), possession-based (what you have) and inherence-based (what you are). Authentication schemes belonging to distinct authentication factors can be combined in a multi-factor manner to increase security. Although multiple multi-factor proposals are seen in literature, the absence of a method that allows a proper comparison and selection of these authentication methods, based on an application’s security requirements, can be observed. Existing frameworks for the analysis of authentication methods have been identified through the realization of a systematic literature review, but most of these focus on specific contexts and do not provide a generic enough solution. Due to the above, this research focuses on the creation of a recommendation framework that guides in the comparison and selection of single and multi-factor authentication schemes, considering both the application’s requirements and its context. This has been attained not only through the knowledge found in literature, but the experience from industry experts has been compiled as well through the collaboration with a multinational software development company. Consequently, the knowledge found in literature has been obtained from a systematic literature review, whereas the experience from industry experts was obtained through a survey and interviews. The framework proposal has been generated based on the above and has been validated through an expert panel and a case study methodology in collaboration with the partnered software development company. A tool prototype has been constructed as well. The result is a recommendation framework for the comparison and selection of authentication methods that can support this decision process in multiple contexts.

2021 ◽  
Vol 13 (2) ◽  
pp. 737
Author(s):  
Indre Siksnelyte-Butkiene ◽  
Dalia Streimikiene ◽  
Tomas Balezentis ◽  
Virgilijus Skulskis

The European Commission has recently adopted the Renovation Wave Strategy, aiming at the improvement of the energy performance of buildings. The strategy aims to at least double renovation rates in the next ten years and make sure that renovations lead to higher energy and resource efficiency. The choice of appropriate thermal insulation materials is one of the simplest and, at the same time, the most popular strategies that effectively reduce the energy demand of buildings. Today, the spectrum of insulation materials is quite wide, and each material has its own specific characteristics. It is recognized that the selection of materials is one of the most challenging and difficult steps of a building project. This paper aims to give an in-depth view of existing multi-criteria decision-making (MCDM) applications for the selection of insulation materials and to provide major insights in order to simplify the process of methods and criteria selection for future research. A systematic literature review is performed based on the Search, Appraisal, Synthesis and Analysis (SALSA) framework and the Preferred Reporting Items for Systematic Reviews and Meta-Analyses (PRISMA) statement. In order to determine which MCDM method is the most appropriate for different questions, the main advantages and disadvantages of different methods are provided.


Signals ◽  
2021 ◽  
Vol 2 (4) ◽  
pp. 803-819
Author(s):  
Nabin Chowdhury

As digital instrumentation in Nuclear Power Plants (NPPs) is becoming increasingly complex, both attack vectors and defensive strategies are evolving based on new technologies and vulnerabilities. Continued efforts have been made to develop a variety of measures for the cyber defense of these infrastructures, which often consist in adapting security measures previously developed for other critical infrastructure sectors according to the requirements of NPPs. That being said, due to the very recent development of these solutions, there is a lack of agreement or standardization when it comes to their adoption at an industrial level. To better understand the state of the art in NPP Cyber-Security (CS) measures, in this work, we conduct a Systematic Literature Review (SLR) to identify scientific papers discussing CS frameworks, standards, guidelines, best practices, and any additional CS protection measures for NPPs. From our literature analysis, it was evidenced that protecting the digital space in NPPs involves three main steps: (i) identification of critical digital assets; (ii) risk assessment and threat analysis; (iii) establishment of measures for NPP protection based on the defense-in-depth model. To ensure the CS protection of these infrastructures, a holistic defense-in-depth approach is suggested in order to avoid excessive granularity and lack of compatibility between different layers of protection. Additional research is needed to ensure that such a model is developed effectively and that it is based on the interdependencies of all security requirements of NPPs.


2015 ◽  
Vol 14 (3) ◽  
pp. 545-560
Author(s):  
Rosana Sarita de Araujo

Resumo: O trabalho discute o processo seletivo de tutores da UAB da UFAL, considerando os aspectos legais, bem como os aspectos técnico-pedagógicos que traduzem a seleção como criteriosa e significativa. Caracterizada como pesquisa qualitativa utiliza a metodologia de estudo de caso e de comparação para estudo de dois editais da UFAL de processos seletivos de tutores. A análise dos dados aponta as limitações que a legislação delineia para a seleção de tutores, as diferenças nos índices de aprovação dos candidatos em relação às etapas utilizadas no processo de seleção, os impactos da prova de conhecimento versus entrevista, bem como demonstra a crescente credibilidade do processo de seleção de tutores da UFAL.   Palavras-chave: Seleção de tutores. Base legal. Aspectos pedagógicos Abstract: The work discusses the selection process of the UAB tutors from UFAL, considering the legal aspects, as well as pedagogical and technical aspects that reflect the selection as judicious and significant. Characterized as qualitative research it uses the case study methodology and comparison for the study of two UFAL public notices for the selective processes of tutors. Data analysis points out the limitations that legislation delineates for the selection of tutors, differences in approval rates of candidates regarding the steps used in the selection process, the impacts of proof of knowledge versus interview, and it also demonstrates the growing credibility of the UFAL tutors selection process. Keywords: Selection of tutors. Legal basis. Pedagogical aspects Resumen: En este trabajo se discute el proceso de selección de los tutores de la UAB UFAL, considerando los aspectos legales , así como los aspectos técnicos y pedagógicos que traducen la selección minunciosa y significativa. Caracterizado como investigación cualitativa utiliza la metodología de estudio de caso y comparación con el estudio de dos convocatorias de la UFAL de procesos de selección de tutores. La análisis de los datos muestran las limitaciones que la legislación esboza para seleccionar los tutores, las diferencias en los índices de aprobación de los candidato en relación a las fases utilizadas en el proceso de selección , el impacto de la prueba de conocimientos frente a la entrevista , y demuestra la credibilidad creciente del proceso de selección de tutores de la UFAL . Palabras clave: Selección de tutores. Base legal. Aspectos pedagógicos 


Author(s):  
Shiza Nawaz ◽  
Anam Zai ◽  
Salma Imtiaz ◽  
Humaira Ashraf

Global Software Development (GSD) involves multiple sites which comprise of different cultures and time zones apart from geographical locations. It is a common software development approach adopted to achieve competitiveness. However, due to multiple challenges it can result in misunderstandings and rework. Rework raises the chance of project failure by delaying the project and increasing the estimated budget. The aim of this study is to identify and categorize the rework causes to reduce its frequency in GSD. To identify the empirical literature related to causes of rework, we performed a Systematic Literature Review (SLR). A total of 23 studies are included as a result of final inclusion. The empirical literature from the year 2009 to 2020 is searched. The overall identified causes of rework in GSD are categorized into 6 major categories which are communication, Requirement Management (RM), roles of stakeholders, product development/integration issues, documentation issues, and differences among stakeholders. The most reported rework causes are related to the category of communication & coordination and RM. Moreover, an industrial survey is conducted to validate the identified rework causes and their mitigation practices from practitioners. This study will help practitioners and researchers in addressing the identified causes and therefore reduce the chances of rework.


2021 ◽  
pp. 27-33
Author(s):  
Patricia RIVERA-ACOSTA ◽  
Rosa Elia MARTÍNEZ-TORRES ◽  
Maricela OJEDA-GUTIÉRREZ

In the society of the XXI century it is generally accepted that a new intangible resource of organizations is knowledge, in addition to the other existing resources: human, capital, raw materials and equipment. This is particularly true in a knowledge-based society and economy, where knowledge has become an invaluable medium for all organizations, particularly businesses. The objective of this paper is to make a diagnosis to describe how to apply knowledge management in the family business Campechanas la Escondida de la Trinidad. This project is based on a case study methodology, with a descriptive type of research; the collection of information uses as instruments with a qualitative approach, observation and interviewing. The results obtained show a dependence on the tacit knowledge possessed by bakers who apply in the artisanal process, in addition to family members, lack human talent management, formal training and innovation, which has limited their competitiveness.


Sign in / Sign up

Export Citation Format

Share Document