An Improved Method of Incident Detection due to Cyber Attacks

Message:
Article Type:
Research/Original Article (دارای رتبه معتبر)
Abstract:

Human errors in design and configuration of networks and systems are potentials for attacks. Security Operation Center often used in wide networks, is a solution for continuous monitoring and detection, and human workers have key role in it. Through study of visualization subject and comparison between commercial samples of SOCs, this paper proposed a method that helping early detection in wide networks. The proposed method (MAPSA) is adding a cyber-attack real-time visualization module in SOC which SOC's analyzers may use it to early decide about modifications requirement in networks. This method leads to human error reduction, growth of personnel's effectiveness and increase in speed of modification. Therefore decreases the effects of attacks on wide networks.

Language:
Persian
Published:
Journal of Electronic and Cyber Defense, Volume:7 Issue: 4, 2020
Pages:
105 to 116
https://www.magiran.com/p2094507