Leveraging Information Security Continuous Monitoring for Cyber Defense

被引:0
|
作者
AlSadhan, Tina [1 ]
Park, Joon [2 ]
机构
[1] Syracuse Univ, Sch Informat Studies, Syracuse, NY 13244 USA
[2] Syracuse Univ, Syracuse, NY USA
关键词
information security continuous monitoring; cyber security; security automation; risk management;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Cyber infrastructures are constantly under siege by attackers attempting to exploit vulnerabilities. Despite efforts and significant resources expended to protect cyber systems, attackers continue to launch attacks and compromise information systems. Attacks often go unnoticed or security professionals are unable to fully determine the extent of the compromise at the time of attack. Therefore, an earlier awareness and remediation of a security condition can narrow the window of opportunity for an adversary to attack. Considering the large scale of cyber infrastructure, the use of technology in security operations is a critical component for cyber defense. In this research, as part of technology enabled security operation, we analyze the information security continuous monitoring mechanisms and discuss how to leverage them more effectively with extension for cyber defense. In particular, we focus on security controls, security automation, security data, risk scoring, security measurement and situational awareness. Based on our analyses, we will compare the tradeoffs, discuss the challenges for improvements, and present the future strategies for information security continuous monitoring.
引用
收藏
页码:401 / 408
页数:8
相关论文
共 50 条
  • [1] Leveraging Information Security Continuous Monitoring to Enhance Cybersecurity
    AlSadhan, Tina
    Park, Joon S.
    [J]. 2021 INTERNATIONAL CONFERENCE ON COMPUTATIONAL SCIENCE AND COMPUTATIONAL INTELLIGENCE (CSCI 2021), 2021, : 753 - 759
  • [2] Cyber Security Operations Centre Security Monitoring for protecting Business and supporting Cyber Defense Strategy
    Onwubiko, Cyril
    [J]. 2015 International Conference on Cyber Situational Awareness, Data Analytics and Assessment (CyberSA), 2015,
  • [3] Context information based cyber security defense of protection system
    Su, Sheng
    Duan, Xianzhong
    Zeng, Xiangjun
    Chan, W. L.
    Li, K. K.
    [J]. 2007 IEEE POWER ENGINEERING SOCIETY GENERAL MEETING, VOLS 1-10, 2007, : 294 - 294
  • [4] BlackWidow: Monitoring the Dark Web for Cyber Security Information
    Schaefer, Matthias
    Fuchs, Markus
    Strohmeier, Martin
    Engel, Markus
    Liechti, Marc
    Lenders, Vincent
    [J]. 2019 11TH INTERNATIONAL CONFERENCE ON CYBER CONFLICT (CYCON): SILENT BATTLE, 2019, : 499 - 519
  • [5] Context information-based cyber security defense of protection system
    Sheng, Su
    Chan, W. L.
    Li, K. K.
    Duan Xianzhong
    Zeng Xiangjun
    [J]. IEEE TRANSACTIONS ON POWER DELIVERY, 2007, 22 (03) : 1477 - 1481
  • [6] Security Automation for Information Security Continuous Monitoring: Research Framework
    AlSadhan, Tina
    Park, Joon S.
    [J]. Proceedings 2016 IEEE World Congress on Services - SERVICES 2016, 2016, : 130 - 131
  • [7] Social cyber forensics: leveraging open source information and social network analysis to advance cyber security informatics
    Samer Al-khateeb
    Nitin Agarwal
    [J]. Computational and Mathematical Organization Theory, 2020, 26 : 412 - 430
  • [8] Social cyber forensics: leveraging open source information and social network analysis to advance cyber security informatics
    Al-khateeb, Samer
    Agarwal, Nitin
    [J]. COMPUTATIONAL AND MATHEMATICAL ORGANIZATION THEORY, 2020, 26 (04) : 412 - 430
  • [9] Agile monitoring for cyber Defense
    Doyle, J
    Kohane, I
    Long, W
    Shrobe, H
    Szolovits, P
    [J]. DISCEX'01: DARPA INFORMATION SURVIVABILITY CONFERENCE & EXPOSITION II, VOL I, PROCEEDINGS, 2001, : 318 - 328
  • [10] Hardware Security Kernel for Cyber Defense
    Jungwirth, Patrick
    Ross, James
    Secrest, Barry
    Barnett, Thomas
    Chan, Philip
    [J]. DISRUPTIVE TECHNOLOGIES IN INFORMATION SCIENCES II, 2019, 11013