• DocumentCode
    2210165
  • Title

    Design considerations for a case-based reasoning engine for scenario-based cyber incident notification

  • Author

    Woskov, Stephen M. ; Grimaila, Michael R. ; Mills, Robert F. ; Haas, Michael W.

  • Author_Institution
    Air Force Inst. of Technol., Wright-Patterson AFB, OH, USA
  • fYear
    2011
  • fDate
    11-15 April 2011
  • Firstpage
    84
  • Lastpage
    91
  • Abstract
    Virtually all modern organizations have embedded information systems into their core business processes as a means to increase operational efficiency, improve decision making quality, and minimize costs. Unfortunately, this dependence can place an organization´s mission at risk if the confidentiality, integrity, or availability of a critical information resource has been lost or degraded. Within the military, this type of incident could ultimately result in serious consequences including physical destruction and loss of life. To reduce the likelihood of this outcome, personnel must be informed about cyber incidents, and their potential consequences, in a timely and relevant manner so that appropriate contingency actions can be taken. In this paper, we identify criteria for improving the relevance of incident notification, propose the use of case-based reasoning (CBR) for contingency decision support, and identify key design considerations for implementing a CBR system used to deliver relevant notification following a cyber incident.
  • Keywords
    business process re-engineering; case-based reasoning; data integrity; data privacy; decision support systems; military computing; security of data; virtual enterprises; case-based reasoning engine; confidentiality; contingency decision support; core business processes; critical information resource; cyber incidents; decision making quality; design considerations; embedded information systems; integrity; military; operational efficiency; organization mission; personnel; physical destruction; scenario-based cyber incident notification; Availability; Cognition; Decision making; IP networks; Indexing; Knowledge acquisition; Organizations; case indexing; case representation; case-based reasoning; knowledge acquisition; relevance; usability;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence in Cyber Security (CICS), 2011 IEEE Symposium on
  • Conference_Location
    Paris
  • Print_ISBN
    978-1-4244-9905-2
  • Type

    conf

  • DOI
    10.1109/CICYBS.2011.5949397
  • Filename
    5949397