Collaborative Operational Security: The future of Cybersecurity for Research and Education

被引:0
|
作者
Crooks, David [1 ]
Acris, James [1 ]
Atherton, Liam [1 ]
Clark, Paul [2 ]
Cutrina, Pau [3 ]
Jordan, David [4 ]
McKee, Shawn [5 ]
Valsan, Liviu [2 ]
机构
[1] UKRI STFC, RAL, Didcot, Oxon, England
[2] Univ Durham, Durham, England
[3] CERN, European Org Nucl Res, Geneva, Switzerland
[4] Univ Chicago, Chicago, IL 60637 USA
[5] Univ Michigan, Dept Phys, Ann Arbor, MI 48109 USA
关键词
D O I
10.1051/epjconf/202429504013
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
No single organisation has the resources to defend its services alone against most modern malicious actors and so we must protect ourselves as a community. In the face of determined and well-resourced attackers, we must actively collaborate in this effort across HEP and more broadly across Research and Education (R&E). Parallel efforts are necessary to respond appropriately to this requirement. We must share threat intelligence about ongoing cybersecurity incidents with our trusted partners and deploy the fine-grained security network monitoring necessary to make active use of this intelligence. We must also engage with senior management in our organizations to ensure that we work alongside any broader organisational cybersecurity development programs. We report on progress of the Security Operations Center (SOC) Working Group, established by the WLCG but with membership encompassing the R&E sector. The goal of the Working Group is to develop reference designs for SOC deployments and empower R&E organisations to collect, leverage, and act upon targeted, contextualized, actionable threat intelligence. This report will include recent SOC deployment activities at sites with network connectivity in excess of 100Gb/s, as well as new technology designs. An important development, which is likely to form a key part of the WLCG security strategy, is the potential use of passive DNS logs to allow sites without fine-grained network monitoring to benefit from the threat intelligence available to our community. We also report on higher-level progress in engaging with the broader community to establish common approaches to this vital area of cybersecurity.
引用
收藏
页数:8
相关论文
共 50 条
  • [31] FUTURE UTILITY OF OPERATIONAL-RESEARCH
    COWIE, A
    INTERFACES, 1979, 9 (03) : 35 - 36
  • [32] FUTURE OF OPERATIONAL-RESEARCH IS PAST
    ACKOFF, RL
    JOURNAL OF THE OPERATIONAL RESEARCH SOCIETY, 1979, 30 (02) : 93 - 104
  • [33] THE FUTURE OF OPERATIONAL-RESEARCH IS PAST
    ACKOFF, RL
    GENERAL SYSTEMS, 1979, 24 : 241 - 252
  • [34] FUTURE OF OPERATIONAL-RESEARCH - REPLY
    不详
    JOURNAL OF THE OPERATIONAL RESEARCH SOCIETY, 1979, 30 (06) : 592 - 592
  • [35] OPERATIONAL-RESEARCH IN SOCIAL-SECURITY
    HOLDAWAY, AF
    PARTRIDGE, MJK
    OMEGA-INTERNATIONAL JOURNAL OF MANAGEMENT SCIENCE, 1981, 9 (05): : 455 - 468
  • [36] Using Research to Ensure Equity in a Cybersecurity Education Pathway
    Denner, Jill
    Green, Emily
    Edwards, Julie
    2020 IEEE STCBP RESEARCH ON EQUITY AND SUSTAINED PARTICIPATION IN ENGINEERING, COMPUTING, AND TECHNOLOGY (RESPECT), VOL 1, 2020, : 233 - 234
  • [37] OPERATIONAL-RESEARCH IN SOCIAL-SECURITY
    HUGHES, DJ
    JOURNAL OF THE OPERATIONAL RESEARCH SOCIETY, 1984, 35 (12) : A34 - A34
  • [38] Hybrid Cybersecurity Research and Education Environment for Maritime Sector
    Visky, Gabor
    Siganov, Aleksei
    Rehman, Muaan Ur
    Vaarandi, Risto
    Bahsi, Hayretdin
    Tsiopoulos, Leonidas
    2024 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2024, : 644 - 651
  • [39] K-12 Cybersecurity Education, Research, and Outreach
    Javidi, Giti
    Sheybani, Ehsan
    2018 IEEE FRONTIERS IN EDUCATION CONFERENCE (FIE), 2018,
  • [40] The Utility of Information Security Training and Education on Cybersecurity Incidents: An empirical evidence
    Kweon, Eunkyung
    Lee, Hansol
    Chai, Sangmi
    Yoo, Kyeongwon
    INFORMATION SYSTEMS FRONTIERS, 2021, 23 (02) : 361 - 373