Network Security Intelligence Center as a combination of SIC and NOC
Author(s) -
Nаtalia Miloslavskaya
Publication year - 2018
Publication title -
procedia computer science
Language(s) - English
Resource type - Journals
SCImago Journal Rank - 0.334
H-Index - 76
ISSN - 1877-0509
DOI - 10.1016/j.procs.2018.11.084
Subject(s) - computer science , computer security , network security , center (category theory) , denial of service attack , malware , security management , information security , data center , computer network , world wide web , the internet , chemistry , crystallography
In modern networks, information security (IS) incidents have become not only numerous and diverse, but more damaging and disruptive. According to 2017 Cyber Attacks Statistics from hackmaggedon.com, among top attacks are malware, account and DNS hijacking, targeted attacks, DDoS, defacements, malvertising, and SQL injection. Various preventive controls based on IS risk assessment results decrease the majority, but not all IS incidents. Any delay and only reactive actions to IS incidents puts organization’s assets under risk. Therefore, an IS incident management system has become an integral part of the whole organization’s governance system. Thus, in this paper, we propose to unite together all advantages of a Security Intelligence Center and a Network Operations Center in a unified Network Security Intelligence Center (NSIC).
Accelerating Research
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom
Address
John Eccles HouseRobert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom