DocumentCode
2875242
Title
Network Security Risk Assessment and Situation Analysis
Author
Mixia, Lin ; Dongmei, Yu ; Qiuyu, Zhang ; Honglei, Zhu
Author_Institution
Coll. of Comput. & Commun., Lanzhou Univ. of Technol., Lanzhou
fYear
2007
fDate
16-18 April 2007
Firstpage
448
Lastpage
452
Abstract
With the development of computer networks, the spread of malicious network activities poses great risks to the operational integrity of many organizations and imposes heavy economic burdens on life and health. Therefore, risk assessment is very important in network security management and analysis. Network security situation analysis not only can describe the current state but also project the next behavior of the network. Alerts coming from IDS, Firewall, and other security tools are currently growing at a rapid pace. Large organizations are having trouble keeping on top of the current state of their networks. In this paper, we described cyberspace situational awareness from formal and visual methods. Next, to make security administrator comprehend security situation and project the next behaviors of the whole network, we present using parallel axes view to give expression clearly of security events correlations. At last, we concluded that visualization is an important research of risk evaluation and situation analysis of network.
Keywords
authorisation; computer networks; data visualisation; risk management; telecommunication security; Firewall; IDS; computer networks; cyberspace situational awareness; data visualization; formal methods; intrusion detection system; malicious network activities; network security management-analysis; network security risk assessment; security administrator comprehend security; security events correlation; situation analysis; visual methods; Computer network management; Computer networks; Computer security; Data security; Information security; Intrusion detection; National security; Risk analysis; Risk management; Visualization; correlation; security assessment; situational awareness; visualization;
fLanguage
English
Publisher
ieee
Conference_Titel
Anti-counterfeiting, Security, Identification, 2007 IEEE International Workshop on
Conference_Location
Xiamen, Fujian
Print_ISBN
1-4244-1035-5
Electronic_ISBN
1-4244-1035-5
Type
conf
DOI
10.1109/IWASID.2007.373676
Filename
4244868
Link To Document