{"title":"SKRM: Where security techniques talk to each other","authors":"Xiaoyan Sun, Jun Dai, Peng Liu","doi":"10.1109/cogsima.2013.6523841","DOIUrl":null,"url":null,"abstract":"Achieving complete and accurate cyber situation awareness (SA) is crucial for security analysts to make right decisions. To facilitate cyber SA, existing security tools, algorithms, and techniques like attack graph, should be integrated together to extract the most critical information and synthesize knowledge from different areas. Based on existing theories of situation awareness, a cyber SA model and an SKRM (Situation Knowledge Reference Model) model are constructed to enhance the coupling of current techniques to situation awareness to enable security analysts' effective analysis of complex cyber-security problems.","PeriodicalId":243766,"journal":{"name":"2013 IEEE International Multi-Disciplinary Conference on Cognitive Methods in Situation Awareness and Decision Support (CogSIMA)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2013-02-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2013 IEEE International Multi-Disciplinary Conference on Cognitive Methods in Situation Awareness and Decision Support (CogSIMA)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/cogsima.2013.6523841","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
Achieving complete and accurate cyber situation awareness (SA) is crucial for security analysts to make right decisions. To facilitate cyber SA, existing security tools, algorithms, and techniques like attack graph, should be integrated together to extract the most critical information and synthesize knowledge from different areas. Based on existing theories of situation awareness, a cyber SA model and an SKRM (Situation Knowledge Reference Model) model are constructed to enhance the coupling of current techniques to situation awareness to enable security analysts' effective analysis of complex cyber-security problems.