Collaborative Operational Security: The future of Cybersecurity for Research and Education

被引:0
|
作者
Crooks, David [1 ]
Acris, James [1 ]
Atherton, Liam [1 ]
Clark, Paul [2 ]
Cutrina, Pau [3 ]
Jordan, David [4 ]
McKee, Shawn [5 ]
Valsan, Liviu [2 ]
机构
[1] UKRI STFC, RAL, Didcot, Oxon, England
[2] Univ Durham, Durham, England
[3] CERN, European Org Nucl Res, Geneva, Switzerland
[4] Univ Chicago, Chicago, IL 60637 USA
[5] Univ Michigan, Dept Phys, Ann Arbor, MI 48109 USA
关键词
D O I
10.1051/epjconf/202429504013
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
No single organisation has the resources to defend its services alone against most modern malicious actors and so we must protect ourselves as a community. In the face of determined and well-resourced attackers, we must actively collaborate in this effort across HEP and more broadly across Research and Education (R&E). Parallel efforts are necessary to respond appropriately to this requirement. We must share threat intelligence about ongoing cybersecurity incidents with our trusted partners and deploy the fine-grained security network monitoring necessary to make active use of this intelligence. We must also engage with senior management in our organizations to ensure that we work alongside any broader organisational cybersecurity development programs. We report on progress of the Security Operations Center (SOC) Working Group, established by the WLCG but with membership encompassing the R&E sector. The goal of the Working Group is to develop reference designs for SOC deployments and empower R&E organisations to collect, leverage, and act upon targeted, contextualized, actionable threat intelligence. This report will include recent SOC deployment activities at sites with network connectivity in excess of 100Gb/s, as well as new technology designs. An important development, which is likely to form a key part of the WLCG security strategy, is the potential use of passive DNS logs to allow sites without fine-grained network monitoring to benefit from the threat intelligence available to our community. We also report on higher-level progress in engaging with the broader community to establish common approaches to this vital area of cybersecurity.
引用
收藏
页数:8
相关论文
共 50 条
  • [1] The Future of Cybersecurity Education
    McDuffie, Ernest L.
    Piotrowski, Victor P.
    COMPUTER, 2014, 47 (08) : 67 - 69
  • [2] Cybersecurity economics - balancing operational security spending
    Ekelund, Stale
    Iskoujina, Zilia
    INFORMATION TECHNOLOGY & PEOPLE, 2019, 32 (05) : 1318 - 1342
  • [3] Cybersecurity Research for the Future
    Benzel, Terry
    COMMUNICATIONS OF THE ACM, 2021, 64 (01) : 26 - 28
  • [4] A collaborative cybersecurity framework for higher education
    Otoom, Ahmed Ali
    Atoum, Issa
    Al-Harahsheh, Heba
    Aljawarneh, Mahmoud
    Al Refai, Mohammed N.
    Baklizi, Mahmoud
    INFORMATION AND COMPUTER SECURITY, 2024,
  • [5] Perspectives on the Future of Cybersecurity Education
    Raj, Rajendra K.
    Ekstrom, Joseph J.
    Impagliazzo, John
    Lingafelt, Steven
    Parrish, Allen
    Reif, Harry
    Sobiesk, Ed
    2017 IEEE FRONTIERS IN EDUCATION CONFERENCE (FIE), 2017,
  • [6] FUTURE-RESEARCH, EDUCATION OF ENGINEERS AND FUTURE SECURITY ON ONE HAND
    SPUR, G
    WERKSTATTSTECHNIK ZEITSCHRIFT FUR INDUSTRIELLE FERTIGUNG, 1984, 74 (07): : 446 - 448
  • [7] Cybersecurity as Illuminator for the Future of Computing Research Considering the shifting fundamentals of cybersecurity research
    Wroclawski, John
    Benzel, Terry
    COMMUNICATIONS OF THE ACM, 2022, 65 (05) : 39 - 41
  • [8] A Collaborative Framework for Envisioning the Future of Social Work Research and Education
    Lein, Laura
    Uehara, Edwina S.
    Lightfoot, Elizabeth
    Lawlor, Edward F.
    Williams, James Herbert
    SOCIAL WORK RESEARCH, 2017, 41 (02) : 67 - 71
  • [9] EDUCATION FOR OPERATIONAL RESEARCH
    LAW, CE
    OPERATIONAL RESEARCH QUARTERLY, 1966, 17 (04) : 463 - &
  • [10] EDUCATION FOR OPERATIONAL RESEARCH
    WHITE, DJ
    OPERATIONAL RESEARCH QUARTERLY, 1967, 18 (02) : 191 - &