Security and Business Situational Awareness

被引:0
|
作者
Rieke, Roland [1 ,2 ]
Zhdanova, Maria [1 ]
Repp, Juergen [1 ]
机构
[1] Fraunhofer Inst SIT, Darmstadt, Germany
[2] Univ Marburg, Marburg, Germany
关键词
Predictive security analysis; Process behavior analysis; Security modeling and simulation; Security monitoring; Security strategy; Security information and event management; Governance and compliance; PERSPECTIVE; ENTERPRISE; FRAMEWORK; SYSTEMS;
D O I
10.1007/978-3-319-25360-2_9
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
"Security needs to be aligned with business". Business situational awareness is the ability to continually monitor ongoing actions and events related to business operations and estimate the immediate and close-future impact of the new information. This ability is crucial for business continuity and should encompass all associated aspects. Considering the growing dependability of businesses on IT on the one hand, and ever increasing threats on the other, IT security aspects should get adequate attention in the awareness system. We present an approach to raise business situational awareness using an advanced method of predictive security analysis at runtime. It continually observes a system's event stream to find deviations from specified behavior and violations of security compliance rules. Operational models of the key processes are utilized to predict critical security states, evaluate possible countermeasures, and trigger corrective actions. A security information model maintains the security strategy and explains possible deviations from the originating goal. The approach is demonstrated on an industrial scenario from a European research project.
引用
收藏
页码:103 / 115
页数:13
相关论文
共 50 条
  • [11] An Ontological Approach to Situational Awareness Applied to Information Security
    da Rosa, Diorgenes Yuri
    Almeida, Ricardo
    Machado, Roger
    Yamin, Adenauer
    Pernas, Ana Marilza
    2018 XLIV LATIN AMERICAN COMPUTER CONFERENCE (CLEI 2018), 2018, : 718 - 727
  • [12] Application of Crawler Algorithm for Situational Awareness in Network Security
    Jagadish, Sripelli
    Madanan, Mukesh
    PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON DATA SCIENCE, MACHINE LEARNING AND APPLICATIONS, VOL 1, ICDSMLA 2023, 2025, 1273 : 429 - 438
  • [13] Research on Host-Level Security Situational Awareness
    Zhou Ti
    Wang Xiao-fei
    Feng Li
    Wang Jing
    PROCEEDINGS 2010 3RD IEEE INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY, (ICCSIT 2010), VOL 1, 2010, : 575 - 579
  • [14] Shared Situational Awareness in Information Security Incident Management
    Padayachee, Keshnee
    Worku, Elias
    2017 12TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2017, : 479 - 483
  • [15] A Study of Network Security Situational Awareness in Internet of Things
    Li, Jingyi
    Yi, Xiaoyin
    Wei, Shi
    2020 16TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE, IWCMC, 2020, : 1624 - 1629
  • [16] Improved Information Security Situational Awareness by Manifold Visualisation
    Evesti, Antti
    Wieser, Christian
    Zhao, Tiandu
    ACM PROCEEDINGS OF THE 10TH EUROPEAN CONFERENCE ON SOFTWARE ARCHITECTURE WORKSHOPS (ECSA-W), 2016,
  • [17] Sensing the Arctic: Situational awareness and the future of northern security
    Johnson, Benjamin T.
    INTERNATIONAL JOURNAL, 2021, 76 (03): : 404 - 426
  • [18] Functional Requirements of Situational Awareness in Computer Network Security
    Onwubiko, Cyril
    ISI: 2009 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS, 2009, : 209 - 213
  • [19] A Methodology for Online Situational Awareness Provision in a Business Entity
    Amanowicz, Marek
    ELECTRONICS, 2025, 14 (03):
  • [20] Selection and Fusion of Indicators for Network Security Situational Awareness
    Fu Yanming
    Chen Pan
    Zhong Mi
    Chen Wen
    MATERIALS SCIENCE AND ENGINEERING, PTS 1-2, 2011, 179-180 : 613 - +