The Rise of Cognitive SOCs: A Systematic Literature Review on AI Approaches

被引:0
|
作者
Binbeshr, Farid [1 ]
Imam, Muhammad [1 ,2 ]
Ghaleb, Mustafa [1 ]
Hamdan, Mosab [4 ]
Rahim, Mussadiq Abdul [1 ]
Hammoudeh, Mohammad [3 ]
机构
[1] King Fahd Univ Petr & Minerals, Interdisciplinary Res Ctr Intelligent Secure Syst, Dhahran 31261, Saudi Arabia
[2] King Fahd Univ Petr & Minerals, Dept Comp Engn, Dhahran 31261, Saudi Arabia
[3] King Fahd Univ Petr & Minerals, Dept Informat & Comp Sci, Dhahran 31261, Saudi Arabia
[4] Natl Coll Ireland, Sch Comp, Dublin D02 VY45, Ireland
关键词
Artificial intelligence; Security; Systematic literature review; Real-time systems; Automation; Threat assessment; Taxonomy; Surveys; Petroleum; Natural language processing; Artificial intelligence (AI); cognitive computing; cybersecurity; deep learning; explainable AI; human-AI collaboration; machine learning; natural language processing; network security; security automation; security information and event management (SIEM); security operations center (SOC); threat detection; threat intelligence; zero trust security;
D O I
10.1109/OJCS.2025.3536800
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The increasing sophistication of cyber threats has led to the evolution of Security Operations Centers (SOCs) towards more intelligent and adaptive systems. This review explores the integration of Artificial Intelligence (AI) in SOCs, focusing on their current state, challenges, opportunities, and advantages over traditional methods. We address three key questions: (1) What are the current AI approaches in SOCs? (2) What challenges and opportunities exist with these approaches? (3) What benefits do AI models offer in SOC environments compared to traditional methods? We analyzed 38 studies using a structured methodology involving database searches, quality checks, and data extraction. Our findings show that Machine Learning (ML) techniques dominate SOC research, with a trend towards multi-approach AI methods. We classified these into ML, Natural Language Processing, multi-approach, and others, forming a detailed taxonomy of AI applications in SOCs. Challenges include data quality, model interpretability, legacy system integration, and the need for constant adaptation. Opportunities involve task automation, enhanced threat detection, real-time analysis, and adaptive learning. AI-driven SOCs show better accuracy, reduced false positives, greater scalability, and predictive capabilities than traditional approaches. This review defines Cognitive SOCs, emphasizing their ability to mimic human-like processes. We offer practical insights for SOC designers and managers on implementing AI to improve security operations. Finally, we suggest future research directions in explainable AI, human-AI collaboration, and privacy-preserving AI for SOCs.
引用
收藏
页码:360 / 379
页数:20
相关论文
共 50 条
  • [31] AI literacy in K-12: a systematic literature review
    Lorena Casal-Otero
    Alejandro Catala
    Carmen Fernández-Morante
    Maria Taboada
    Beatriz Cebreiro
    Senén Barro
    International Journal of STEM Education, 10
  • [32] AI-driven crime prediction: a systematic literature review
    Nadeem Iqbal
    Awais Hassan
    Talha Waheed
    Journal of Computational Social Science, 2025, 8 (2):
  • [33] A systematic literature review of software requirements reuse approaches
    Irshad, Mohsin
    Petersen, Kai
    Poulding, Simon
    INFORMATION AND SOFTWARE TECHNOLOGY, 2018, 93 : 223 - 245
  • [34] A systematic literature review of speech emotion recognition approaches
    Singh, Youddha Beer
    Goel, Shivani
    NEUROCOMPUTING, 2022, 492 : 245 - 263
  • [35] Software requirements testing approaches: a systematic literature review
    Jemison dos Santos
    Luiz Eduardo G. Martins
    Valdivino A. de Santiago Júnior
    Lucas Venezian Povoa
    Luciana Brasil R. dos Santos
    Requirements Engineering, 2020, 25 : 317 - 337
  • [36] Approaches to water springs in literature: a systematic bibliographic review
    Rosso-Pinto, Mauricio Jose
    Hanai, Frederico Yuri
    DESENVOLVIMENTO E MEIO AMBIENTE, 2023, 62 : 574 - 574
  • [37] Software requirements testing approaches: a systematic literature review
    dos Santos, Jemison
    Martins, Luiz Eduardo G.
    de Santiago Junior, Valdivino A.
    Povoa, Lucas Venezian
    dos Santos, Luciana Brasil R.
    REQUIREMENTS ENGINEERING, 2020, 25 (03) : 317 - 337
  • [38] Biocultural approaches to sustainability: A systematic review of the scientific literature
    Hanspach, Jan
    Haider, Lisbeth Jamila
    Oteros-Rozas, Elisa
    Olafsson, Anton Stahl
    Gulsrud, Natalie M.
    Raymond, Christopher M.
    Torralba, Mario
    Martin-Lopez, Berta
    Bieling, Claudia
    Garcia-Martin, Maria
    Albert, Christian
    Beery, Thomas H.
    Fagerholm, Nora
    Diaz-Reviriego, Isabel
    Drews-Shambroom, Annika
    Plieninger, Tobias
    PEOPLE AND NATURE, 2020, 2 (03) : 643 - 659
  • [39] A Systematic Literature Review on the Hybrid Approaches for Recommender Systems
    Morales Murillo, Victor Giovanni
    Pinto Avendano, David Eduardo
    Rojas Lopez, Franco
    Gonzales Calleros, Juan Manuel
    COMPUTACION Y SISTEMAS, 2022, 26 (01): : 357 - 372
  • [40] Systematic literature review on approaches of extracting image merits
    Onaizah, Ameer N.
    Xia, Yuanqing
    Zhan, Yufeng
    Hussain, Khurram
    Koondhar, Iftikhar Ahmed
    OPTIK, 2022, 271