CSD Rolodex

Rick Kuhn

Computer Scientist

National Institute of Standards and Technology
Computer Security Division
Phone: 301-975-3337
Fax: 301-948-0279
kuhn@nist.gov

Projects:

Publications:   

NIST Publications:

Presentations:

  • Automated Combinatorial Testing 
  • Automated Combinatorial Testing for Software
  • Software Fault Interactions
  • Quantum Cryptography Today and Tomorrow:  Or, How to Make and Break Quantum Cryptosystems
  • Security for Telecommuting and Broadband Communications
  • Toward Credible IT Testing and Certification
  • Biographical information:

    Rick Kuhn is a computer scientist in the Computer Security Division of the National  Institute of Standards and Technology . He has authored more than 70 publications on information security, empirical studies of software failure, and software assurance, currently focusing on combinatorial testing.  He co-developed the role based access control model (RBAC) used throughout industry and led the effort that established RBAC as an ANSI standard. From 1994 to 1995, he served as Program Manager for the Committee on Applications  and Technology of the President's  Information Infrastructure Task Force and from 1996 to 1999 as manager  of the Software Quality Group at NIST.  Before joining NIST in 1984, he worked as a systems analyst with NCR Corporation  and the Johns  Hopkins University Applied Physics Laboratory. He received an MS in computer science from the University of Maryland College Park, and a BA and MBA from William & Mary.
    • Senior member of the Institute of Electrical and Electronics Engineers (IEEE) and IEEE Computer Society; member, Association for Computing Machinery (ACM).
    • Editorial board member and co-editor, Emerging Technologies & Standards Dept, IEEE Security & Privacy
    • Editorial board member, IEEE IT Professional; co-editor, Insecure IT column
    • Excellence in Technology Transfer Award, 2009, Federal Laboratory Consortium Mid-Atlantic Region. 
    • Best Standards Contribution, NIST/ITL, 2008
    • Best Journal Paper Award, NIST/ITL, 2007
    • Outstanding Authorship Award, NIST/ITL, 2003
    • Gold medal award for scientific/engineering achievement, U.S. Dept. of Commerce, 2002;
    • Excellence in Technology Transfer Award,1998, Federal Laboratory Consortium.
    • Bronze Medal, U.S. Dept. of Commerce, 1990;
    • "Posix Pioneer" certificate of appreciation, IEEE Technical Committee on Operating Systems, 1988;
    • Member, Beta Gamma Sigma honorary.
    • Patents: Implementation of Role Based Access Control in Multi-level Secure Systems. U.S. Patent #6,023,765.,
    • Past member of DARPA High Confidence Systems Working Group, IEEE Technical Committee on Operating Systems POSIX 1003.1, 1003.2 and 1201.2 working groups; and  President's National Security Telecommunications Advisory Committee/ Network Security Information Exchange
    • Past projects: development of software tools and conformance  test suites; methods for analyzing changes in formal specifications;  verification of cryptographic protocols; and the first formal definition of role based access control; IEEE POSIX working groups and developing parts of the POSIX Conformance Test Suite for IEEE 1003.1; and definition of software assurance requirements  for FIPS 140-1 (Security Requirements for Cryptographic Modules).

    Education: