{"id":"https://openalex.org/W1965604362","doi":"https://doi.org/10.1145/2808783.2808788","title":"Compliance Control","display_name":"Compliance Control","publication_year":2015,"publication_date":"2015-10-06","ids":{"openalex":"https://openalex.org/W1965604362","doi":"https://doi.org/10.1145/2808783.2808788","mag":"1965604362"},"language":"en","primary_location":{"id":"doi:10.1145/2808783.2808788","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2808783.2808788","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5063254632","display_name":"William Casey","orcid":"https://orcid.org/0000-0001-7718-7385"},"institutions":[{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"William Austin Casey","raw_affiliation_strings":["Carnegie Mellon University, Pittsburgh, PA, USA","Carnegie-Mellon University, Pittsburgh, Pa., USA#TAB#"],"affiliations":[{"raw_affiliation_string":"Carnegie Mellon University, Pittsburgh, PA, USA","institution_ids":["https://openalex.org/I74973139"]},{"raw_affiliation_string":"Carnegie-Mellon University, Pittsburgh, Pa., USA#TAB#","institution_ids":["https://openalex.org/I74973139"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081500464","display_name":"Quanyan Zhu","orcid":"https://orcid.org/0000-0002-0008-2953"},"institutions":[{"id":"https://openalex.org/I57206974","display_name":"New York University","ror":"https://ror.org/0190ak572","country_code":"US","type":"education","lineage":["https://openalex.org/I57206974"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Quanyan Zhu","raw_affiliation_strings":["New York University, New York, NY, USA"],"affiliations":[{"raw_affiliation_string":"New York University, New York, NY, USA","institution_ids":["https://openalex.org/I57206974"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048340882","display_name":"Jose Andre Morales","orcid":"https://orcid.org/0000-0001-7177-8192"},"institutions":[{"id":"https://openalex.org/I74973139","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33","country_code":"US","type":"education","lineage":["https://openalex.org/I74973139"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jose Andre Morales","raw_affiliation_strings":["Carnegie Mellon University, Pittsburgh, PA, USA","Carnegie-Mellon University, Pittsburgh, Pa., USA#TAB#"],"affiliations":[{"raw_affiliation_string":"Carnegie Mellon University, Pittsburgh, PA, USA","institution_ids":["https://openalex.org/I74973139"]},{"raw_affiliation_string":"Carnegie-Mellon University, Pittsburgh, Pa., USA#TAB#","institution_ids":["https://openalex.org/I74973139"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5053379558","display_name":"Bud Mishra","orcid":null},"institutions":[{"id":"https://openalex.org/I57206974","display_name":"New York University","ror":"https://ror.org/0190ak572","country_code":"US","type":"education","lineage":["https://openalex.org/I57206974"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Bud Mishra","raw_affiliation_strings":["New York University, New York, NY, USA"],"affiliations":[{"raw_affiliation_string":"New York University, New York, NY, USA","institution_ids":["https://openalex.org/I57206974"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5063254632"],"corresponding_institution_ids":["https://openalex.org/I74973139"],"apc_list":null,"apc_paid":null,"fwci":2.3838,"has_fulltext":false,"cited_by_count":21,"citation_normalized_percentile":{"value":0.90715469,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"53","last_page":"62"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9864000082015991,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9864000082015991,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12592","display_name":"Opinion Dynamics and Social Influence","score":0.9860000014305115,"subfield":{"id":"https://openalex.org/subfields/3109","display_name":"Statistical and Nonlinear Physics"},"field":{"id":"https://openalex.org/fields/31","display_name":"Physics and Astronomy"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11252","display_name":"Evolutionary Game Theory and Cooperation","score":0.9557999968528748,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/liveness","display_name":"Liveness","score":0.8152573704719543},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6936866044998169},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.6633516550064087},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.5903724431991577},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.57861328125},{"id":"https://openalex.org/keywords/control","display_name":"Control (management)","score":0.4841047525405884},{"id":"https://openalex.org/keywords/trace","display_name":"TRACE (psycholinguistics)","score":0.4724612236022949},{"id":"https://openalex.org/keywords/trustworthiness","display_name":"Trustworthiness","score":0.4505593478679657},{"id":"https://openalex.org/keywords/risk-analysis","display_name":"Risk analysis (engineering)","score":0.4154888689517975},{"id":"https://openalex.org/keywords/human\u2013computer-interaction","display_name":"Human\u2013computer interaction","score":0.40988704562187195},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.18873003125190735},{"id":"https://openalex.org/keywords/distributed-computing","display_name":"Distributed computing","score":0.12112107872962952},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.11540096998214722}],"concepts":[{"id":"https://openalex.org/C15569618","wikidata":"https://www.wikidata.org/wiki/Q3561421","display_name":"Liveness","level":2,"score":0.8152573704719543},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6936866044998169},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.6633516550064087},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.5903724431991577},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.57861328125},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.4841047525405884},{"id":"https://openalex.org/C75291252","wikidata":"https://www.wikidata.org/wiki/Q1315756","display_name":"TRACE (psycholinguistics)","level":2,"score":0.4724612236022949},{"id":"https://openalex.org/C153701036","wikidata":"https://www.wikidata.org/wiki/Q659974","display_name":"Trustworthiness","level":2,"score":0.4505593478679657},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.4154888689517975},{"id":"https://openalex.org/C107457646","wikidata":"https://www.wikidata.org/wiki/Q207434","display_name":"Human\u2013computer interaction","level":1,"score":0.40988704562187195},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.18873003125190735},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.12112107872962952},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.11540096998214722},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2808783.2808788","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2808783.2808788","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 7th ACM CCS International Workshop on Managing Insider Security Threats","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.5400000214576721}],"awards":[],"funders":[{"id":"https://openalex.org/F4320306078","display_name":"U.S. Department of Defense","ror":"https://ror.org/0447fe631"},{"id":"https://openalex.org/F4320310207","display_name":"Carnegie Mellon University","ror":"https://ror.org/05x2bcf33"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":15,"referenced_works":["https://openalex.org/W97809322","https://openalex.org/W275510463","https://openalex.org/W1966878414","https://openalex.org/W2023320309","https://openalex.org/W2040049280","https://openalex.org/W2088997459","https://openalex.org/W2106677558","https://openalex.org/W2115747715","https://openalex.org/W2140246545","https://openalex.org/W2142947219","https://openalex.org/W2162737890","https://openalex.org/W2171776966","https://openalex.org/W2212484157","https://openalex.org/W2578901186","https://openalex.org/W3140895391"],"related_works":["https://openalex.org/W1565271071","https://openalex.org/W2081199208","https://openalex.org/W3349016","https://openalex.org/W3160870209","https://openalex.org/W2494011163","https://openalex.org/W2053262709","https://openalex.org/W2906845177","https://openalex.org/W4200107511","https://openalex.org/W2891427086","https://openalex.org/W1968625315"],"abstract_inverted_index":{"The":[0,59],"agents":[1,32,147],"of":[2,7,67,88,145,153],"an":[3,34,121,125,131],"organization,":[4,63],"in":[5,73],"fulfillment":[6],"their":[8,40],"tasks,":[9],"generate":[10],"a":[11,54,105,143,161],"cyber-physical-human":[12],"trace,":[13],"which":[14],"is":[15,72],"amenable":[16],"to":[17,23,38,110,115,129,142,156],"formal":[18],"analysis":[19],"with":[20],"modal":[21],"logic":[22],"verify":[24],"safety":[25,79,119,135],"and":[26,46,75,80,114,134,148],"liveness":[27,81],"properties.":[28],"Trusted":[29],"but":[30],"non-trustworthy":[31],"within":[33],"organization":[35,100],"may":[36],"attempt":[37],"conceal":[39],"true":[41,70],"intentions,":[42],"develop":[43],"deceptive":[44],"strategies,":[45],"exploit":[47],"the":[48,62,99,139,150],"organization--a":[49],"scenario":[50],"modeled":[51],"here":[52],"as":[53,83,85],"basic":[55,140],"compliance":[56],"signaling":[57],"game.":[58],"challenge":[60],"for":[61,124],"only":[64],"partially":[65],"informed":[66],"its":[68,77,117],"own":[69,78,118],"state,":[71],"measuring":[74],"estimating":[76],"properties":[82],"accurately":[84],"possible--the":[86],"subject":[87],"this":[89],"paper.":[90],"To":[91],"improve":[92],"measurements,":[93],"we":[94],"suggest":[95],"counter":[96],"strategies":[97],"where":[98],"presents":[101],"honey":[102],"objectives":[103],"on":[104],"closely":[106],"monitored":[107],"attack":[108],"surface":[109],"elicit":[111],"exploitive":[112],"actions":[113],"estimate":[116],"properties,":[120],"activity":[122],"required":[123],"adaptive":[126],"response":[127],"aiming":[128],"manage":[130],"organization's":[132],"vulnerability":[133],"surfaces.":[136],"We":[137],"expand":[138],"game":[141],"system":[144],"social-technological":[146],"tailor":[149],"encounter":[151],"structure":[152],"evolutionary":[154],"games":[155],"one":[157],"that":[158],"best":[159],"fits":[160],"typical":[162],"organization.":[163]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":2},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":4},{"year":2019,"cited_by_count":5},{"year":2018,"cited_by_count":2},{"year":2017,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2016-06-24T00:00:00"}
