Cybersecurity – Security Operations Center

Pedro Falé, Leonilde Reis, Rui Almeida
{"title":"Cybersecurity – Security Operations Center","authors":"Pedro Falé, Leonilde Reis, Rui Almeida","doi":"10.31410/itema.2022.99","DOIUrl":null,"url":null,"abstract":"Currently, most organizations are dependent on Information and Communication Technologies, in the sense of accomplishing their underly­ing business activities. In this scope, cybersecurity is considered the domain that has the strength to protect sensitive information, be it at the individu­al level or in an organizational context. The objective of this paper is to in­troduce the concept, relevance, and functions of a Security Operations Cen­tre. The methodology underlying the study was based on the use of the MI­TRE Adversarial Tactics, Techniques and Common Knowledge framework as a matrix of tactics and techniques based on real scenario observations. The main results emphasize the importance of incorporating the Security Oper­ations Center as a barrier against cybersecurity threats. Security Operations Center brings additional value to the organizational context, through peo­ple, processes and technologies while also using several frameworks to im­prove work management, incident response and incident control.","PeriodicalId":389229,"journal":{"name":"Sixth International Scientific Conference ITEMA Recent Advances in Information Technology, Tourism, Economics, Management and Agriculture","volume":"50 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"1900-01-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Sixth International Scientific Conference ITEMA Recent Advances in Information Technology, Tourism, Economics, Management and Agriculture","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.31410/itema.2022.99","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

Currently, most organizations are dependent on Information and Communication Technologies, in the sense of accomplishing their underly­ing business activities. In this scope, cybersecurity is considered the domain that has the strength to protect sensitive information, be it at the individu­al level or in an organizational context. The objective of this paper is to in­troduce the concept, relevance, and functions of a Security Operations Cen­tre. The methodology underlying the study was based on the use of the MI­TRE Adversarial Tactics, Techniques and Common Knowledge framework as a matrix of tactics and techniques based on real scenario observations. The main results emphasize the importance of incorporating the Security Oper­ations Center as a barrier against cybersecurity threats. Security Operations Center brings additional value to the organizational context, through peo­ple, processes and technologies while also using several frameworks to im­prove work management, incident response and incident control.
网络安全—安全运营中心
目前,大多数组织都依赖于信息和通信技术来完成其基本的业务活动。在这个范围内,网络安全被认为是具有保护敏感信息的力量的领域,无论是在个人层面还是在组织环境中。本文的目的是介绍安全行动中心的概念、相关性和功能。该研究的基本方法是基于MI-TRE对抗性战术、技术和常识框架的使用,作为基于真实情景观察的战术和技术矩阵。主要结果强调了将安全运营中心作为抵御网络安全威胁的屏障的重要性。安全运营中心通过人员、流程和技术为组织环境带来了额外的价值,同时还使用了几个框架来改进工作管理、事件响应和事件控制。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信