Drift-Responsive Security Architecture (DRSA): A Framework for Human-Entropy-Aware System Design

Fuente: Zenodo
Enregistré dans:
Détails bibliographiques
Auteur principal: Truong, Narnaiezzsshaa
Format: Recurso digital
Langue:anglais
Publié: Zenodo 2026
Sujets:
Accès en ligne:
Tags: Ajouter un tag
Pas de tags, Soyez le premier à ajouter un tag!
_version_ 1866901471595855872
author Truong, Narnaiezzsshaa
author_facet Truong, Narnaiezzsshaa
contents <p>Traditional security architectures assume disciplined users operating within defined processes. Reality contradicts this assumption: humans take shortcuts, avoid cleanup, bypass process, collapse under pressure, and normalize drift. This preprint introduces Drift-Responsive Security Architecture (DRSA), a framework that treats human drift as primary telemetry rather than policy deviation.</p> <p>DRSA inverts the traditional security model. Instead of demanding compliance and punishing deviation, it assumes entropy and designs systems that remain secure regardless of human behavior. The framework introduces seven architectural layers—each mapped to a mythic "guardian" creature that embodies a specific threat pattern and design response—covering identity, drift telemetry, verification, guardrails, pressure sensing, cleanup/lifecycle, and trust chains.</p> <p>Key contributions include: (1) the formalization of "drift as telemetry" as a design principle; (2) pressure-responsive security posture that tightens automatically when humans are least reliable; (3) the Gate-Binder verification model that binds truth to action regardless of path; and (4) a complete myth-tech taxonomy for teaching and implementing the architecture.</p> <p>DRSA is designed for SMB-to-enterprise environments operating hybrid infrastructure, SaaS-heavy stacks, and identity-centric security models where human operators are overloaded and attackers exploit drift more than misconfigurations.</p>
format Recurso digital
id zenodo_https___doi_org_10_5281_zenodo_18357893
institution Zenodo
language eng
publishDate 2026
publisher Zenodo
record_format zenodo
spellingShingle Drift-Responsive Security Architecture (DRSA): A Framework for Human-Entropy-Aware System Design
Truong, Narnaiezzsshaa
drift-responsive security, human factors security, behavioral security, pressure-responsive controls, verification architecture, security telemetry, human entropy, Zero Trust alternative, myth-tech security, guardrail design, trust chains, security hygiene
<p>Traditional security architectures assume disciplined users operating within defined processes. Reality contradicts this assumption: humans take shortcuts, avoid cleanup, bypass process, collapse under pressure, and normalize drift. This preprint introduces Drift-Responsive Security Architecture (DRSA), a framework that treats human drift as primary telemetry rather than policy deviation.</p> <p>DRSA inverts the traditional security model. Instead of demanding compliance and punishing deviation, it assumes entropy and designs systems that remain secure regardless of human behavior. The framework introduces seven architectural layers—each mapped to a mythic "guardian" creature that embodies a specific threat pattern and design response—covering identity, drift telemetry, verification, guardrails, pressure sensing, cleanup/lifecycle, and trust chains.</p> <p>Key contributions include: (1) the formalization of "drift as telemetry" as a design principle; (2) pressure-responsive security posture that tightens automatically when humans are least reliable; (3) the Gate-Binder verification model that binds truth to action regardless of path; and (4) a complete myth-tech taxonomy for teaching and implementing the architecture.</p> <p>DRSA is designed for SMB-to-enterprise environments operating hybrid infrastructure, SaaS-heavy stacks, and identity-centric security models where human operators are overloaded and attackers exploit drift more than misconfigurations.</p>
title Drift-Responsive Security Architecture (DRSA): A Framework for Human-Entropy-Aware System Design
topic drift-responsive security, human factors security, behavioral security, pressure-responsive controls, verification architecture, security telemetry, human entropy, Zero Trust alternative, myth-tech security, guardrail design, trust chains, security hygiene
url https://doi.org/10.5281/zenodo.18357893