Security and Business Situational Awareness

被引:0
|
作者
Rieke, Roland [1 ,2 ]
Zhdanova, Maria [1 ]
Repp, Juergen [1 ]
机构
[1] Fraunhofer Inst SIT, Darmstadt, Germany
[2] Univ Marburg, Marburg, Germany
关键词
Predictive security analysis; Process behavior analysis; Security modeling and simulation; Security monitoring; Security strategy; Security information and event management; Governance and compliance; PERSPECTIVE; ENTERPRISE; FRAMEWORK; SYSTEMS;
D O I
10.1007/978-3-319-25360-2_9
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
"Security needs to be aligned with business". Business situational awareness is the ability to continually monitor ongoing actions and events related to business operations and estimate the immediate and close-future impact of the new information. This ability is crucial for business continuity and should encompass all associated aspects. Considering the growing dependability of businesses on IT on the one hand, and ever increasing threats on the other, IT security aspects should get adequate attention in the awareness system. We present an approach to raise business situational awareness using an advanced method of predictive security analysis at runtime. It continually observes a system's event stream to find deviations from specified behavior and violations of security compliance rules. Operational models of the key processes are utilized to predict critical security states, evaluate possible countermeasures, and trigger corrective actions. A security information model maintains the security strategy and explains possible deviations from the originating goal. The approach is demonstrated on an industrial scenario from a European research project.
引用
收藏
页码:103 / 115
页数:13
相关论文
共 50 条
  • [31] Network security situational awareness model based on threat intelligence
    Zhang H.
    Yin Y.
    Zhao D.
    Liu B.
    1600, Editorial Board of Journal on Communications (42): : 182 - 194
  • [32] ARIMA Supplemented Security Metrics for Quality Assurance and Situational Awareness
    Kohlrausch, Jan
    Brin, Eugene A.
    DIGITAL THREATS: RESEARCH AND PRACTICE, 2020, 1 (01):
  • [33] A Network Security Situational Awareness Model Based on Information Fusion
    Abasi
    ADVANCES IN MECHATRONICS, AUTOMATION AND APPLIED INFORMATION TECHNOLOGIES, PTS 1 AND 2, 2014, 846-847 : 1632 - 1635
  • [34] Comprehensive analysis of Network security situational awareness methods and models
    Wei, Xiumei
    Jiang, Xuesong
    2013 2ND INTERNATIONAL SYMPOSIUM ON INSTRUMENTATION AND MEASUREMENT, SENSOR NETWORK AND AUTOMATION (IMSNA), 2013, : 176 - 179
  • [35] A New Method of Data Preprocessing for Network Security Situational Awareness
    Lu, Aiping
    Li, Jianping
    Yang, Lin
    2010 2ND INTERNATIONAL WORKSHOP ON DATABASE TECHNOLOGY AND APPLICATIONS PROCEEDINGS (DBTA), 2010,
  • [36] Security Issues in Situational Awareness: Adversarial Threats and Mitigation Techniques
    Munir, Arslan
    Blasch, Erik
    Aved, Alexander
    Ratazzi, Edward Paul
    Kong, Joonho
    IEEE SECURITY & PRIVACY, 2022, 20 (04) : 51 - 60
  • [37] The Role of Situational Awareness in Cyber Security and Cyber Defense Strategy
    Onwubiko, Cyril
    2015 International Conference on Cyber Situational Awareness, Data Analytics and Assessment (CyberSA), 2015,
  • [38] Application of Cyber Situational Awareness and Cyber Security in Vehicular Networks
    Eiza, Mahmoud Hashem
    2017 INTERNATIONAL CONFERENCE ON SOCIAL MEDIA, WEARABLE AND WEB ANALYTICS (SOCIAL MEDIA), 2017,
  • [39] Situational Awareness
    Austen, Doug
    FISHERIES, 2014, 39 (01) : 4 - 43
  • [40] A Dashboard for Cyber Situational Awareness and Decision Support in Network Security Management
    Matta, Lukas
    Husak, Martin
    2021 IFIP/IEEE INTERNATIONAL SYMPOSIUM ON INTEGRATED NETWORK MANAGEMENT (IM 2021), 2021, : 716 - 717