Article ID | Journal | Published Year | Pages | File Type |
---|---|---|---|---|
456417 | Computers & Security | 2016 | 21 Pages |
This paper presents a network-based document management model to protect sensitive data from unauthorized disclosure in organizations. The presented framework utilizes XML security concept, PKI cryptosystem and an XML-based metadata embedding approach mainly to address the problem of information leakage that may happen through employees of a company (also known as the insider threat).By utilizing the above-mentioned techniques, our suggested framework wraps the confidential documents with an additional layer of security meta-data that can be investigated in critical network points of an organization to prevent illegal data distribution. This solution can also guarantee data confidentiality, integrity, and support for non-repudiation. We believe our suggested model can effectively prevent intentional or unintentional data leak incidents.