DocumentCode :
2994127
Title :
A perceptually-relevant model-based cyber threat prediction method for enterprise mission assurance
Author :
Morris, Tahía Infantes ; Mayron, Liam M. ; Smith, Wayne B. ; Knepper, Margaret M. ; Ita, Reg ; Fox, Kevin L.
Author_Institution :
Gov. Commun. Syst. Div., Harris Corp., Melbourne, FL, USA
fYear :
2011
fDate :
22-24 Feb. 2011
Firstpage :
60
Lastpage :
65
Abstract :
Cyber attacks remain elusive and are increasingly effective. Information security professionals regularly monitor network resources and cyber security websites with an interest in understanding how such threats expose their enterprise´s vulnerabilities and dependencies. However, information must be persistently and purposefully examined from a multitude of resources in order to establish context and situational awareness. This in turn, enables organizations to perceive, anticipate and counteract threats before they occur and helps assure their ability to accomplish their missions. Global information must be transformed into timely and local actionable knowledge. To achieve this, cyber event data coupled with knowledge of the semantic interrelationships between other location, object, agent, and event entities need to be factored to facilitate a clearer understanding of the total cyber landscape. In this work, we introduce an ontology driven framework comprising of a dynamic knowledge base, a functional and self-updating mission model, and the associated information and complex event processing capabilities. We focus the description of the system on cyber mission information needs, whereby collection, processing, management and mission model updates are based on cyber-related information from a variety of resources including commercial news, blogs, wikis, and social media sources. The result is a dynamic capability for cyber mission management that provides proactive, on demand cyber information to analysts, professionals, policy makers, and support personnel.
Keywords :
business data processing; computer crime; knowledge based systems; ontologies (artificial intelligence); complex event processing capability; cyber attack; cyber event data; cyber information analysis; cyber landscape; cyber mission information need; cyber related information; cyber security Web sites; dynamic knowledge base; enterprise mission assurance; information security professional; network resource; ontology driven framework; perceptually relevant model based cyber threat prediction method; selfupdating mission model; situational awareness; social media source; Context; Measurement; Media; Monitoring; Ontologies; Organizations; Semantics;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Cognitive Methods in Situation Awareness and Decision Support (CogSIMA), 2011 IEEE First International Multi-Disciplinary Conference on
Conference_Location :
Miami Beach, FL
Print_ISBN :
978-1-61284-785-6
Type :
conf
DOI :
10.1109/COGSIMA.2011.5753755
Filename :
5753755
Link To Document :
بازگشت