Architecture of Anomaly Detection Module for the Security Operations Center

被引:7
|
作者
Bienias, Piotr [1 ]
Kolaczek, Grzegorz [1 ]
Warzynski, Arkadiusz [1 ]
机构
[1] Wroclaw Univ Sci & Technol, Fac Comp Sci & Management, 27 Wybrzeze Wyspianskiego St, PL-50370 Wroclaw, Poland
关键词
anomaly detection; Security Operation Center; intrusion detection;
D O I
10.1109/WETICE.2019.00035
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
The paper presents the preliminary results of the research undertaken within RegSOC project. The goal of the project is initiate a prototype instance of the model Regional Center for Cybersecurity (RegSOC) and to facilitate to the public entities. The outcomes of this project will allow to raise levels of security protection and to present procedures, which can reduce the probability of unwanted events and methods of lowering their consequences. The project aims at developing a comprehensive cybersecurity monitoring platform which will be the software and organizational solution (management models and organizational procedures). The software part of the platform will constitute several modules specialized in various types of security level evaluation. The paper focuses on the module integrated with the RegSOC platform which will support security-related events detection by detecting anomalies. The architecture of the anomaly detection module has been introduced and the functional and non-functional requirements related to this module have been discussed. Also, the role and the way of integrating the module with the general RegSOC architecture has been demonstrated.
引用
收藏
页码:126 / 131
页数:6
相关论文
共 50 条
  • [41] Multimodel anomaly detection on spatio-temporal logistic datastream with open anomaly detection architecture
    Oktay, Talha
    Yogurtcuoglu, Erdenay
    Sarikaya, Ramazan Nejdet
    Karaca, Ali Recep
    Komurcu, Mehmet Firat
    Sayar, Ahmet
    EXPERT SYSTEMS WITH APPLICATIONS, 2021, 186
  • [42] Security Analysis of the TSN Backbone Architecture and Anomaly Detection System Design Based on IEEE 802.1Qci
    Luo, Feng
    Wang, Bowen
    Fang, Zihao
    Yang, Zhenyu
    Jiang, Yifan
    SECURITY AND COMMUNICATION NETWORKS, 2021, 2021
  • [43] Anomaly Detection in Data Center IT & Physical Infrastructure
    Ronchieri, Elisabetta
    Giommi, Luca
    Scarponi, Luigi Benedettto
    Torzi, Luca
    Costantini, Alessandro
    Duma, Doina Cristina
    Salomoni, Davide
    26TH INTERNATIONAL CONFERENCE ON COMPUTING IN HIGH ENERGY AND NUCLEAR PHYSICS, CHEP 2023, 2024, 295
  • [44] A solution for the public - The operations and architecture of the Getty-Center (Architecture by Richard Meier)
    Takiguchi, N
    A + U-ARCHITECTURE AND URBANISM, 1998, (328): : 58 - 69
  • [45] The Next Generation Cognitive Security Operations Center: Adaptive Analytic Lambda Architecture for Efficient Defense against Adversarial Attacks
    Demertzis, Konstantinos
    Tziritas, Nikos
    Kikiras, Panayiotis
    Sanchez, Salvador Llopis
    Iliadis, Lazaros
    BIG DATA AND COGNITIVE COMPUTING, 2019, 3 (01) : 1 - 21
  • [46] Weakly supervised video anomaly detection with temporal attention module
    Song, Wonjoon
    Kim, Jonghyun
    Kim, Joongkyu
    2022 37TH INTERNATIONAL TECHNICAL CONFERENCE ON CIRCUITS/SYSTEMS, COMPUTERS AND COMMUNICATIONS (ITC-CSCC 2022), 2022, : 982 - 985
  • [47] Improved AutoEncoder With LSTM Module and KL Divergence for Anomaly Detection
    Huang, Wei
    Zhang, Bingyang
    Zhang, Kaituo
    Gao, Hua
    Wan, Rongchun
    IEEE TRANSACTIONS ON INSTRUMENTATION AND MEASUREMENT, 2024, 73
  • [48] WARM: A wavelet adaptive restoration module for surface anomaly detection
    Qiao, Zelong
    Lin, Mingxing
    Lin, Jie
    Ding, Dejia
    MEASUREMENT, 2024, 232
  • [49] Anomaly Detection Module for Network Traffic Monitoring in Public Institutions
    Wawrowski, Lukasz
    Bialas, Andrzej
    Kajzer, Adrian
    Kozlowski, Artur
    Kurianowicz, Rafal
    Sikora, Marek
    Szymanska-Kwiecien, Agnieszka
    Uchronski, Mariusz
    Bialczak, Milosz
    Olejnik, Maciej
    Michalak, Marcin
    SENSORS, 2023, 23 (06)
  • [50] A Novel Anomaly Detection Approach for Executable Program Security
    Pan, Wei
    Li, Weihua
    Zhao, Wanxin
    MINES 2009: FIRST INTERNATIONAL CONFERENCE ON MULTIMEDIA INFORMATION NETWORKING AND SECURITY, VOL 1, PROCEEDINGS, 2009, : 422 - +