Architecture of Anomaly Detection Module for the Security Operations Center

被引:7
|
作者
Bienias, Piotr [1 ]
Kolaczek, Grzegorz [1 ]
Warzynski, Arkadiusz [1 ]
机构
[1] Wroclaw Univ Sci & Technol, Fac Comp Sci & Management, 27 Wybrzeze Wyspianskiego St, PL-50370 Wroclaw, Poland
关键词
anomaly detection; Security Operation Center; intrusion detection;
D O I
10.1109/WETICE.2019.00035
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The paper presents the preliminary results of the research undertaken within RegSOC project. The goal of the project is initiate a prototype instance of the model Regional Center for Cybersecurity (RegSOC) and to facilitate to the public entities. The outcomes of this project will allow to raise levels of security protection and to present procedures, which can reduce the probability of unwanted events and methods of lowering their consequences. The project aims at developing a comprehensive cybersecurity monitoring platform which will be the software and organizational solution (management models and organizational procedures). The software part of the platform will constitute several modules specialized in various types of security level evaluation. The paper focuses on the module integrated with the RegSOC platform which will support security-related events detection by detecting anomalies. The architecture of the anomaly detection module has been introduced and the functional and non-functional requirements related to this module have been discussed. Also, the role and the way of integrating the module with the general RegSOC architecture has been demonstrated.
引用
收藏
页码:126 / 131
页数:6
相关论文
共 50 条
  • [1] Software Defined Security Architecture with Deep Learning-Based Network Anomaly Detection Module
    Zhang, Gang
    Qiu, Xiaofeng
    Gao, Yang
    2019 IEEE 11TH INTERNATIONAL CONFERENCE ON COMMUNICATION SOFTWARE AND NETWORKS (ICCSN 2019), 2019, : 784 - 788
  • [2] NFV Anomaly Detection: Case Study through a Security Module
    Bondan, Lucas
    Wauter, Tim
    Volckaert, Bruno
    De Turck, Filip
    Granville, Lisandro Zambenedetti
    IEEE COMMUNICATIONS MAGAZINE, 2022, 60 (02) : 18 - 24
  • [3] FamilyGuard: A Security Architecture for Anomaly Detection in Home Networks
    de Melo, Pedro H. A. D.
    Miani, Rodrigo Sanches
    Rosa, Pedro Frosi
    SENSORS, 2022, 22 (08)
  • [4] Regional Center of Cybersecurity anomaly detection module efficiency in network monitoring scenarios
    Warzynski, Arkadiusz
    Schauer, Patryk
    Falas, Lukasz
    2021 IEEE 30TH INTERNATIONAL CONFERENCE ON ENABLING TECHNOLOGIES: INFRASTRUCTURE FOR COLLABORATIVE ENTERPRISES (WETICE 2021), 2021, : 107 - 112
  • [5] Improved CPSoS Security: An Enhanced Anomaly-Based Intrusion Detection Architecture
    Stadler, Marco
    Riegler, Michael
    Sametinger, Johannes
    Schoenegger, Christoph
    DATABASE AND EXPERT SYSTEMS APPLICATIONS - DEXA 2024 WORKSHOPS, 2024, 2169 : 3 - 13
  • [6] An Anomaly Detection Module for Firefox OS
    Chen, Borting
    Shih, Ming-Wei
    Huang, Yu-Lun
    2014 IEEE EIGHTH INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND RELIABILITY - COMPANION (SERE-C 2014), 2014, : 176 - 184
  • [7] An Architecture for Inline Anomaly Detection
    Krueger, Tammo
    Gehl, Christian
    Rieck, Konrad
    Laskov, Pavel
    EC2ND 2008: FOURTH ANNUAL EUROPEAN CONFERENCE ON COMPUTER NETWORK DEFENSE, PROCEEDINGS, 2008, : 11 - 18
  • [8] Federated Learning for Anomaly Detection in Open RAN: Security Architecture Within a Digital Twin
    Rumesh, Yasintha
    Attanayaka, Dinaj
    Porambage, Pawani
    Pinola, Jarno
    Groen, Joshua
    Chowdhury, Kaushik
    2024 JOINT EUROPEAN CONFERENCE ON NETWORKS AND COMMUNICATIONS & 6G SUMMIT, EUCNC/6G SUMMIT 2024, 2024, : 877 - 882
  • [9] Kepler Science Operations Center Architecture
    Middour, Christopher
    Klaus, Todd C.
    Jenkins, Jon
    Pletcher, David
    Cote, Miles
    Chandrasekaran, Hema
    Wohler, Bill
    Girouard, Forrest
    Gunter, Jay P.
    Uddin, Kamal
    Allen, Christopher
    Hall, Jennifer
    Ibrahim, Khadeejah
    Clarke, Bruce
    Li, Jie
    McCauliff, Sean
    Quintana, Elisa
    Sommers, Jeneen
    Stroozas, Brett
    Tenenbaum, Peter
    Twicken, Joseph
    Wu, Hayley
    Caldwell, Doug
    Bryson, Stephen
    Bhavsar, Paresh
    Wu, Michael
    Stamper, Brian
    Trombly, Terry
    Page, Christopher
    Santiago, Elaine
    SOFTWARE AND CYBERINFRASTRUCTURE FOR ASTRONOMY, 2010, 7740
  • [10] On ubiquitous network security and anomaly detection
    Van Dyke, C
    Koc, CK
    2003 SYMPOSIUM ON APPLICATIONS AND THE INTERNET WORKSHOPS, PROCEEDINGS, 2003, : 374 - 378