Title :
Towards improved cyber security information sharing
Author :
Dandurand, Luc ; Serrano, Oscar Serrano
Author_Institution :
Cyber Defence & Assured Inf. Sharing, NATO Commun. & Inf. Agency, The Hague, Netherlands
Abstract :
There is a requirement for improved information sharing and automation in the cyber security domain. Current practices and supporting technologies limit the ability of organizations to take full advantage of their staff´s expertise and the trust relationships they have established with each other in their efforts to secure their communication and information systems. Limitations include the lack of interoperable standards, the absence of mechanisms to govern and control the use of sensitive information, and problems validating data quality. While centralized repositories, distribution lists and web services have been adopted in an attempt to address the requirement, the underlying needs are only partly met by these approaches, which do not deliver the required efficiency and effectiveness. Analysis of the specific constraints applicable in the cyber security domain led to definition of the Cyber Security Data Exchange and Collaboration Infrastructure (CDXI) capability. CDXI provides a knowledge management tool for the cyber security domain whose objectives are to facilitate information sharing, enable automation, and facilitate the generation, refinement and vetting of data through burden-sharing collaboration or outsourcing. The capability is defined through a set of high-level requirements that are both necessary and sufficient. This paper describes the high-level requirements and provides a brief description of the work performed to develop the CDXI concept to date as well as planned future work.
Keywords :
Web services; electronic data interchange; groupware; knowledge management; open systems; outsourcing; security of data; CDXI; Cyber security data exchange and collaboration infrastructure; Cyber security information sharing; Web service; burden sharing collaboration; centralized repository; communication system security; data quality; distribution list; information system security; interoperable standard; knowledge management tool; outsourcing; Automation; Collaboration; Computer security; Information management; Organizations; Standards organizations; Cyber security; automation; collaboration; data sharing; knowledge management;
Conference_Titel :
Cyber Conflict (CyCon), 2013 5th International Conference on
Conference_Location :
Tallinn
Print_ISBN :
978-1-4799-0450-1