A Hierarchical Architectural Model for Network Security Exploring Situational Awareness

被引:0
|
作者
Almeida, Ricardo Borges [1 ]
Covalski, Victor [1 ]
Machado, Roger [1 ]
Leal da Rosa, Diorgenes Yuri [1 ]
Yamin, Adenauer Correa [1 ]
Donato, Lucas Medeiros [2 ]
Pernas, Ana Marilza [1 ]
机构
[1] Univ Fed Pelotas, Pelotas, Brazil
[2] De Montfort Univ, Leicester, Leics, England
关键词
Network Security; Situational Awareness; Architectural Model;
D O I
10.1145/3297280.3297417
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Often network security technologies used by organizations for securing their computational systems are deficient in providing holistic view of the environment. Based on this, our paper presents an architectural model based on a Situational Awareness approach for securing computational systems in distributed environments. The architecture is called EXEHDA-ISSA and is inspired by SIEM systems. It is composed of three modular software components called Collector, SmartLogger, and Manager. These components are interconnected following a multi-level hierarchical model and provide features such as event collection, hybrid event processing and a hybrid approach to contextual data storage. For the purpose of evaluating this proposal, four case studies were developed to validate the holistic view of security events as well as the model's characteristics such as flexibility, autonomy, scalability and the support to heterogeneity. Finally, the strengths and limitations of our approach are discussed, then followed by future works.
引用
收藏
页码:1365 / 1372
页数:8
相关论文
共 50 条
  • [31] Construction and Application of a Group-Level Network Security Situational Awareness Platform
    Zhang, Lei
    [J]. Hedongli Gongcheng/Nuclear Power Engineering, 2020, 41 : 63 - 67
  • [32] Research on Key Technologies of Network Security Situational Awareness for Attack Tracking Prediction
    KOU Guang
    WANG Shuo
    TANG Guangming
    [J]. Chinese Journal of Electronics, 2019, 28 (01) : 162 - 171
  • [33] A Quantification Method for Network Security Situational Awareness Based on Conditional Random Fields
    Li, Jianping
    Wang, Huiqiang
    [J]. ICCIT: 2009 FOURTH INTERNATIONAL CONFERENCE ON COMPUTER SCIENCES AND CONVERGENCE INFORMATION TECHNOLOGY, VOLS 1 AND 2, 2009, : 993 - 998
  • [34] Network Security Situational Awareness Based on Genetic Algorithm in Wireless Sensor Networks
    Zhang, Jinna
    [J]. JOURNAL OF SENSORS, 2022, 2022
  • [35] The Current Research Status of AI-Based Network Security Situational Awareness
    Wang, Maoli
    Song, Guangxue
    Yu, Yang
    Zhang, Bowen
    [J]. ELECTRONICS, 2023, 12 (10)
  • [36] Building situational awareness for network threats in fog/edge computing: Emerging paradigms beyond the security perimeter model
    Rapuzzi, R.
    Repetto, M.
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 85 : 235 - 249
  • [37] Establishment of nonlinear network security situational awareness model based on random forest under the background of big data
    He, Jinkui
    Su, Weibin
    [J]. NONLINEAR ENGINEERING - MODELING AND APPLICATION, 2023, 12 (01):
  • [38] Architecture for the Cyber Security Situational Awareness System
    Kokkonen, Tero
    [J]. INTERNET OF THINGS, SMART SPACES, AND NEXT GENERATION NETWORKS AND SYSTEMS, NEW2AN 2016/USMART 2016, 2016, 9870 : 294 - 302
  • [39] A Study on the State of Practice in Security Situational Awareness
    Kanstren, Teemu
    Evesti, Antti
    [J]. 2016 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY COMPANION (QRS-C 2016), 2016, : 69 - 76
  • [40] Cyber Security Situational Awareness among Parents
    Ahmad, Nazilah
    Mokhtar, Umi Asma
    Othman, Zulaiha Ali
    Abdullah, Siti Norul Huda Sheikh
    Fauzi, Wan Fariza Paizi
    Yeop, Yusri Hakim
    [J]. PROCEEDINGS OF THE 2018 CYBER RESILIENCE CONFERENCE (CRC), 2018,