Security and Business Situational Awareness

被引:0
|
作者
Rieke, Roland [1 ,2 ]
Zhdanova, Maria [1 ]
Repp, Juergen [1 ]
机构
[1] Fraunhofer Inst SIT, Darmstadt, Germany
[2] Univ Marburg, Marburg, Germany
关键词
Predictive security analysis; Process behavior analysis; Security modeling and simulation; Security monitoring; Security strategy; Security information and event management; Governance and compliance; PERSPECTIVE; ENTERPRISE; FRAMEWORK; SYSTEMS;
D O I
10.1007/978-3-319-25360-2_9
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
"Security needs to be aligned with business". Business situational awareness is the ability to continually monitor ongoing actions and events related to business operations and estimate the immediate and close-future impact of the new information. This ability is crucial for business continuity and should encompass all associated aspects. Considering the growing dependability of businesses on IT on the one hand, and ever increasing threats on the other, IT security aspects should get adequate attention in the awareness system. We present an approach to raise business situational awareness using an advanced method of predictive security analysis at runtime. It continually observes a system's event stream to find deviations from specified behavior and violations of security compliance rules. Operational models of the key processes are utilized to predict critical security states, evaluate possible countermeasures, and trigger corrective actions. A security information model maintains the security strategy and explains possible deviations from the originating goal. The approach is demonstrated on an industrial scenario from a European research project.
引用
收藏
页码:103 / 115
页数:13
相关论文
共 50 条
  • [41] Analysis framework of network security situational awareness and comparison of implementation methods
    Li, Yan
    Huang, Guang-qiu
    Wang, Chun-zi
    Li, Ying-chao
    EURASIP JOURNAL ON WIRELESS COMMUNICATIONS AND NETWORKING, 2019, 2019 (01)
  • [42] A Cloud Security Situational Awareness Model based on Parallel Apriori Algorithm
    Liang Xiao
    Lv Hongwu
    Guo Fangfang
    Wang Huiqiang
    MECHATRONICS ENGINEERING, COMPUTING AND INFORMATION TECHNOLOGY, 2014, 556-562 : 6294 - 6297
  • [43] Quantification of network security situational awareness based on evolutionary neural network
    Liang, Ying
    Wang, Hui-Qiang
    Lai, Ji-Bao
    PROCEEDINGS OF 2007 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-7, 2007, : 3267 - 3272
  • [44] Shared Situational Awareness to meet future airspace security mission needs
    Bolczak, Catherine N.
    Fong, Chih-Chia Vanessa
    2008 INTEGRATED COMMUNICATIONS, NAVIGATION AND SURVEILLANCE CONFERENCE, 2008, : 144 - 152
  • [45] PANEMOTO: Network visualization of security situational awareness through passive analysis
    Streilein, William
    Kratkiewicz, Kendra
    Sikorski, Michael
    Piwowarski, Keith
    Webster, Seth
    2007 IEEE INFORMATION ASSURANCE WORKSHOP, 2007, : 284 - +
  • [46] A host security situational awareness model based on process and file behaviors
    Zhou, Ti
    Zhang, Jian
    Wang, Xiaofei
    Feng, Li
    Huazhong Keji Daxue Xuebao (Ziran Kexue Ban)/Journal of Huazhong University of Science and Technology (Natural Science Edition), 2010, 38 (10): : 39 - 42
  • [47] Situational awareness
    Johan F. Hoorn
    Cognition, Technology & Work, 2006, 8 (1) : 1 - 1
  • [48] A distributed multi-agent architecture for computer security situational awareness
    Engelhardt, D
    Anderson, M
    FUSION 2003: PROCEEDINGS OF THE SIXTH INTERNATIONAL CONFERENCE OF INFORMATION FUSION, VOLS 1 AND 2, 2003, : 193 - 200
  • [49] Research on a Critical Link Discovery Method for Network Security Situational Awareness
    Yang, Guozheng
    Zhang, Yongheng
    Lu, Yuliang
    Xie, Yi
    Yu, Jiayi
    ENTROPY, 2024, 26 (04)
  • [50] Cross-Domain Situational Awareness and Collaborative Working for Cyber Security
    Hall, Mark John
    Hansen, Devon David
    Jones, Kevin
    2015 International Conference on Cyber Situational Awareness, Data Analytics and Assessment (CyberSA), 2015,