【24h】

Architecture of Anomaly Detection Module for the Security Operations Center

机译:安全运营中心异常检测模块架构

获取原文
获取原文并翻译 | 示例

摘要

The paper presents the preliminary results of the research undertaken within RegSOC project. The goal of the project is initiate a prototype instance of the model Regional Center for Cybersecurity (RegSOC) and to facilitate to the public entities. The outcomes of this project will allow to raise levels of security protection and to present procedures, which can reduce the probability of unwanted events and methods of lowering their consequences. The project aims at developing a comprehensive cybersecurity monitoring platform which will be the software and organizational solution (management models and organizational procedures). The software part of the platform will constitute several modules specialized in various types of security level evaluation. The paper focuses on the module integrated with the RegSOC platform which will support security-related events detection by detecting anomalies. The architecture of the anomaly detection module has been introduced and the functional and non-functional requirements related to this module have been discussed. Also, the role and the way of integrating the module with the general RegSOC architecture has been demonstrate.
机译:本文介绍了RegSOC项目中进行的研究的初步结果。该项目的目标是启动模型区域网络安全中心(RegSOC)的原型实例,并为公共实体提供便利。该项目的成果将可以提高安全保护水平并提出程序,从而可以减少有害事件的可能性以及降低其后果的方法。该项目旨在开发一个全面的网络安全监控平台,该平台将成为软件和组织解决方案(管理模型和组织程序)。该平台的软件部分将组成几个专门用于各种类型的安全级别评估的模块。本文重点介绍与RegSOC平台集成的模块,该模块将通过检测异常来支持与安全相关的事件检测。介绍了异常检测模块的体系结构,并讨论了与该模块相关的功能和非功能要求。此外,还展示了将模块与常规RegSOC架构集成的作用和方式。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号