December, 2011The University of Texas at San Antonio (UTSA), University of Texas at Dallas (UT Dallas) and Purdue University jointly announce they have been awarded a five-year, $3 million grant from the National Science Foundation for new cyber security research. Under the direction of principal investigator Ravi Sandhu, executive director of the Institute for Cyber Security and professor of computer science at UTSA, the researchers will study Assured Data Provenance, the discipline of computer science concerned with the integrity and privacy of data’s sources, contents and successive transformations.
Ultimately, the research will benefit the community by providing protocols to increase the trustworthiness of data found online, transmitted and processed by computers.
“With the proliferation of data on the web, the source or provenance of data has become a critical factor in establishing data trustworthiness, in a variety of business and scientific disciplines,” said Sandhu. “To be useful provenance data must have high integrity and accuracy. At the same time provenance data can be confidential and private so it should only be selectively disclosed if at all. How do we balance these conflicting goals?”
Over the past decade, there has been significant progress in data provenance techniques and models. However, so far there is no overarching, systematic framework for the security and privacy of data provenance.
Researchers from UTSA, UT Dallas and Purdue will develop a comprehensive framework to address the security and privacy challenges of provenance data, allowing society to receive maximum benefits from provenance data with realistic tradeoffs. The project will develop reference architectures, offer provenance-related definitions, recommend ways to implement provenance plans in enterprises and provide a risk management framework to guide application architects, designers and users.
“Data, like an historic painting or piece of literature, can have tremendous value since it is widely used to make policy, medical and other important decisions. So its reliability and authenticity is critical,” said Elisa Bertino, computer science professor, interim director of the Purdue Cyber Center in Discovery Park and Purdue’s principal investigator. “Through this project, our team in Purdue’s Cyber Center will focus on the challenging issues in defining models that can provide context for provenance data, its analysis for scientific applications, and how it can be transmitted securely using watermarking techniques. We also hope to advance tools in how provenance data is captured using various computer operating systems and application software, and systems to ensure the data is authentic without compromising confidentiality and privacy.”
UT Dallas will build privacy aware access control policies for provenance data.
“At UT Dallas, we will enable policies to protect certain sensitive paths in the flow of provenance,” said Murat Kantarcioglu, associate professor of computer science and director of the UT Dallas Data Security and Privacy Lab. “In addition, our group will research data sanitization techniques to limit the disclosure of sensitive data sources due to provenance release, and we will develop a risk management framework for provenance releases.”
UTSA, UT Dallas and Purdue began collaborating on assured data provenance research through a Multidisciplinary University Research Initiatives (MURI) project funded by the Air Force Office of Scientific Research. The MURI project enabled the team to develop the preliminaries of a model for assured data provenance, which they then used to apply for NSF funding.
Kantarcioglu and Bertino are UT Dallas’ and Purdue’s principal investigators, respectively. Senior researchers participating in the project include UTSA’s Greg White, associate professor of computer science and director of the Center for Infrastructure Assurance and Security, Shouhuai Xu, associate professor of computer science; UT Dallas’ Alain Bensoussan, distinguished research professor of operations management and director of the International Center for Decision and Risk Analysis, and Bhavani Thusaisingham, the Louis A. Beecherl Jr. I distinguished professor of computer science and director of the Cyber Security Research Center; and Gabriel Ghinita, a former postdoctoral student under Professor Bertino at Purdue who now is an assistant professor at the University of Massachusetts, Boston.
The research also offers the universities an opportunity to train graduate students in the theory and practice of data provenance.
About The University of Texas at San Antonio
The University of Texas at San Antonio is one of the fastest growing higher education institutions in Texas and one of nine academic universities and six health institutions in the UT System. As a multicultural institution, UTSA aims to be a national research university providing access to educational excellence and preparing citizen leaders for the global environment. UTSA serves nearly 31,000 students in 135 degree programs in the colleges of Architecture, Business, Education and Human Development, Engineering, Honors, Liberal and Fine Arts, Public Policy, Sciences and Graduate School. Founded in 1969, UTSA is an intellectual and creative resource center and a socioeconomic development catalyst for Texas and beyond. More information online at www.utsa.edu/today.
About The University of Texas at Dallas
The University of Texas at Dallas, located at the convergence of Richardson, Plano and Dallas in the heart of the complex of major multinational technology corporations known as the Telecom Corridor®, enrolls more than 14,500 students. The school’s freshman class traditionally stands at the forefront of Texas state universities in terms of average SAT scores. The university offers a broad assortment of bachelor’s, master’s and doctoral degree programs. For additional information about UT Dallas, please visit the university’s web site at www.utdallas.edu.
About Purdue University Cyber Center
The Cyber Center, which was launched at Purdue’s interdisciplinary research complex Discovery Park in 2005, is focused on creating systems and tools to disseminate and preserve scientific and engineering knowledge. Its infrastructure is based on distributed computer information and communication technologies. The center is part of the Purdue initiative called ACCESS -- Advanced Computational Center for Engineering and Sciences -- and works with the Rosen Center for Advanced Computing and the Computing Research Institute on campus.