Building a Machine Learning Model for the SOC, by the Input from the SOC, and Analyzing it for the SOC

被引:0
|
作者
Sopan, Awalin [1 ]
Berninger, Matthew [1 ]
Mulakaluri, Murali [1 ]
Katakam, Raj [1 ]
机构
[1] FireEye Inc, Milpitas, CA 95035 USA
关键词
Cyber security; Machine Learning; Information Visualization; Security Operations Center;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This work demonstrates an ongoing effort to employ and explain machine learning model predictions for classifying alerts in Security Operations Centers (SOC). Our ultimate goal is to reduce analyst workload by automating the process of decision making for investigating alerts using the machine learning model in cases where we can completely trust the model. This way, SOC analysts will be able to focus their time and effort to investigate more complex cases of security alerts. To achieve this goal, we developed a system that shows the prediction for an alert and the prediction explanation to security analysts during their daily workflow of investigating individual security alerts. Another part of our system presents the aggregated model analytics to the managers and stakeholders to help them understand the model and decide, on when to trust the model and let the model make the final decision. Using our prediction explanation visualization, security analysts will be able to classify oncoming alerts more efficiently and gain insight into how a machine learning model generates predictions. Our model performance analysis dashboard helps decision makers analyze the model in signature level granularity and gain more insights about the model.
引用
收藏
页数:8
相关论文
共 50 条
  • [1] Challenges in Building Deployable Machine Learning Solutions for SoC Design
    Kapoor, Shristy
    Agarwal, Payal
    Kostas, Lindsey
    2022 IEEE WOMEN IN TECHNOLOGY CONFERENCE (WINTECHCON): SMARTER TECHNOLOGIES FOR A SUSTAINABLE AND HYPER-CONNECTED WORLD, 2022,
  • [2] Machine Learning Opportunities and Applications in SoC Design
    Yan, Bauli
    2018 INTERNATIONAL SYMPOSIUM ON VLSI DESIGN, AUTOMATION AND TEST (VLSI-DAT), 2018,
  • [3] Processors as SoC Building Blocks
    Tanurhan, Yankin
    van der Wolf, Pieter
    2013 IFIP/IEEE 21ST INTERNATIONAL CONFERENCE ON VERY LARGE SCALE INTEGRATION (VLSI-SOC), 2013, : 286 - +
  • [4] Battery SOC estimation from EIS data based on machine learning and equivalent circuit model
    Buchicchio, Emanuele
    De Angelis, Alessio
    Santoni, Francesco
    Carbone, Paolo
    Bianconi, Francesco
    Smeraldi, Fabrizio
    ENERGY, 2023, 283
  • [5] SOC and Academia - Building Resilient Systems
    Zimmerman, Carson
    Bhargav-Spantzel, Abhilasha
    2023 5TH IEEE INTERNATIONAL CONFERENCE ON TRUST, PRIVACY AND SECURITY IN INTELLIGENT SYSTEMS AND APPLICATIONS, TPS-ISA, 2023, : 396 - 399
  • [6] Snapshot SoC identification with Pulse Injection Aided Machine Learning
    Fahmy, Youssef A.
    Wang, Weizhong
    West, Alan C.
    Preindl, Matthias
    JOURNAL OF ENERGY STORAGE, 2021, 41
  • [7] Supervising Communication SoC for Secure Operation Using Machine Learning
    Elkanishy, Abdelrahman
    Badawy, Abdel-Hameed A.
    Furth, Paul M.
    Boucheron, Laura E.
    Michael, Christopher P.
    2019 IEEE 62ND INTERNATIONAL MIDWEST SYMPOSIUM ON CIRCUITS AND SYSTEMS (MWSCAS), 2019, : 582 - 585
  • [8] Comparing Traditional and Machine Learning Models for Battery SOC Calculation
    Barrios, Fernando Andre
    Di Donato, James
    Vidal, Carlos
    Chemmanoor, Nithin
    Ahmed, Ryan
    Emadi, Ali
    Habibi, Saeid
    2022 IEEE/AIAA TRANSPORTATION ELECTRIFICATION CONFERENCE AND ELECTRIC AIRCRAFT TECHNOLOGIES SYMPOSIUM (ITEC+EATS 2022), 2022, : 125 - 130
  • [9] A SoC Model of Hypnosis and Induction
    Lankton, Stephen
    AMERICAN JOURNAL OF CLINICAL HYPNOSIS, 2015, 57 (04) : 367 - 377
  • [10] Influence of soil aggregation on SOC sequestration: A preliminary model of SOC protection by aggregate dynamics
    Yoo, Gayoung
    Yang, Xueming
    Wander, Michelle M.
    ECOLOGICAL ENGINEERING, 2011, 37 (03) : 487 - 495