The Operational Role of Security Information and Event Management Systems

被引:86
|
作者
Bhatt, Sandeep [1 ]
Manadhata, Pratyusa K. [1 ]
Zomlot, Loai [1 ]
机构
[1] Hewlett Packard Labs, Palo Alto, CA 94304 USA
关键词
INTRUSION DETECTION; ALERT CORRELATION;
D O I
10.1109/MSP.2014.103
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
An integral part of enterprise computer security incident response teams, a security operations center (SOC) monitors security incidents in real time. Security incident and event management systems play a critical role in SOCs-collecting, normalizing, storing, and correlating events to identify malicious activities-but face operational challenges.
引用
收藏
页码:35 / 41
页数:7
相关论文
共 50 条
  • [21] A paradigm of information and operational control in port management systems
    Ballis, A
    Stathopoulos, A
    [J]. TRANSPORTATION SYSTEMS 1997, VOLS 1-3, 1997, : 829 - 833
  • [22] Operational definitions in management information systems theory building
    Babbitt, TG
    [J]. ASSOCIATION FOR INFORMATION SYSTEMS PROCEEDING OF THE AMERICAS CONFERENCE ON INFORMATION SYSTEMS, 1997, : 363 - 365
  • [23] The role of management information systems
    Fulweiler, RD
    [J]. JOURNAL OF ACADEMIC LIBRARIANSHIP, 2001, 27 (05): : 386 - 390
  • [24] Towards Automation in Information Security Management Systems
    Brunner, Michael
    Sillaber, Christian
    Breu, Ruth
    [J]. 2017 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY (QRS), 2017, : 160 - 167
  • [25] Integrating Information Security into Quality Management Systems
    Stoll, Margareth
    [J]. TECHNOLOGICAL DEVELOPMENTS IN NETWORKING, EDUCATION AND AUTOMATION, 2010, : 455 - 460
  • [26] An integral framework for information systems security management
    Trcek, D
    [J]. COMPUTERS & SECURITY, 2003, 22 (04) : 337 - 360
  • [27] A Survey on Blockchain for Information Systems Management and Security
    Berdik, David
    Otoum, Safa
    Schmidt, Nikolas
    Porter, Dylan
    Jararweh, Yaser
    [J]. Information Processing and Management, 2021, 58 (01):
  • [28] A Survey on Blockchain for Information Systems Management and Security
    Berdik, David
    Otoum, Safa
    Schmidt, Nikolas
    Porter, Dylan
    Jararweh, Yaser
    [J]. INFORMATION PROCESSING & MANAGEMENT, 2021, 58 (01)
  • [29] Information security management in industrial automation systems
    Savola, Reijo
    [J]. 2006 IEEE International Conference on Industrial Technology, Vols 1-6, 2006, : 2116 - 2121
  • [30] Information Security Management Systems in the Healthcare Context
    Tyali, S.
    Pottas, D.
    [J]. PROCEEDINGS OF THE SOUTH AFRICAN INFORMATION SECURITY MULTI-CONFERENCE, 2010, : 177 - 187