Motivation for the Book This book seeks to establish the state of the art in the cyber situational awareness area and to set the course for future research. A multidisciplinary group of leading researchers from cyber security, cognitive science, and decision science areas elab orate on the fundamental challenges facing the research community and identify promising solution paths. Today, when a security incident occurs, the top three questions security admin istrators would ask are in essence: What has happened? Why did it happen? What should I do? Answers to the ?rst two questions form the core of Cyber Situational Awareness. Whether the last question can be satisfactorily answered is greatly de pendent upon the cyber situational awareness capability of an enterprise. A variety of computer and network security research topics (especially some sys tems security topics) belong to or touch the scope of Cyber Situational Awareness. However, the Cyber Situational Awareness capability of an enterprise is still very limited for several reasons: • Inaccurate and incomplete vulnerability analysis, intrusion detection, and foren sics. • Lack of capability to monitor certain microscopic system/attack behavior. • Limited capability to transform/fuse/distill information into cyber intelligence. • Limited capability to handle uncertainty. • Existing system designs are not very “friendly” to Cyber Situational Awareness.
Les mer
Motivation for the Book This book seeks to establish the state of the art in the cyber situational awareness area and to set the course for future research.
I Overview of Cyber Situational Awareness.- Cyber SA: Situational Awareness for Cyber Defense.- Overview of Cyber Situation Awareness.- II The Reasoning and Decision Making Aspects.- RPD-based Hypothesis Reasoning for Cyber Situation Awareness.- Uncertainty and Risk Management in Cyber Situational Awareness.- III Macroscopic Cyber Situational Awareness.- Employing Honeynets For Network Situational Awareness.- Assessing Cybercrime Through the Eyes of the WOMBAT.- IV Enterprise Cyber Situational Awareness.- Topological Vulnerability Analysis.- Cross-Layer Damage Assessment for Cyber Situational Awareness.- V Microscopic Cyber Situational Awareness.- A Declarative Framework for Intrusion Analysis.- Automated Software Vulnerability Analysis.- VI The Machine Learning Aspect.- Machine Learning Methods for High Level Cyber Situation Awareness.
Les mer
Today, when a security accident occurs, the top three questions security administrators would ask are in essence: What has happened? Why did it happen? What should I do? Answers to the first two questions form the "core" of Cyber Situational Awareness. In addition, whether the last question can be well answered, is greatly dependent upon the cyber situational awareness capability of enterprises. Cyber Situational Awareness: Issues and Research is an edited volume contributed by worldwide cyber security experts. This book seeks to establish state of the art in cyber situational awareness area to set course for future research. A multidisciplinary group of leading researchers from cyber security, cognitive system, and decision science areas will elaborate on the fundamental challenges facing the research community and identify promising solutions paths. Case studies based on real world examples are provided throughout this book. Cyber Situational Awareness: Issues and Research is designed for a professional audience composed of government workers and practitioners working in the field of cyber security. Advanced-level students and researchers studying computer science will also find this book useful, as secondary text or a reference book.
Les mer
Covers fundamental challenges facing this research community Identifies promising solutions paths Includes case studies based on real world examples Includes supplementary material: sn.pub/extras

Produktdetaljer

ISBN
9781441901392
Publisert
2009-10-28
Utgiver
Vendor
Springer-Verlag New York Inc.
Høyde
235 mm
Bredde
155 mm
Aldersnivå
Research, P, 06
Språk
Product language
Engelsk
Format
Product format
Innbundet