{"title":"对安全运营中心的安全关注","authors":"David Janos Feher, Nguyen Huu Phuoc Dai","doi":"10.1109/SACI.2018.8440963","DOIUrl":null,"url":null,"abstract":"A security operations center (SOC) is a centralized place for monitoring and frequently managing the safety and security of the company's status. The primary purpose of SOC is to enable better incident detection, investigation, and response capabilities by using data from endpoint devices, logs, security systems, and network flows. Moreover, an efficient SOC can help the organizations enhance the ability of situational awareness and increase the deployment of enterprise resources to mitigate the security issues. However, the cyber threats are the significant challenges for SOC. In this paper, the authors expressed some security threats towards SOC and several solutions to fight against them.","PeriodicalId":126087,"journal":{"name":"2018 IEEE 12th International Symposium on Applied Computational Intelligence and Informatics (SACI)","volume":"35 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-05-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"16","resultStr":"{\"title\":\"Security Concerns Towards Security Operations Centers\",\"authors\":\"David Janos Feher, Nguyen Huu Phuoc Dai\",\"doi\":\"10.1109/SACI.2018.8440963\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"A security operations center (SOC) is a centralized place for monitoring and frequently managing the safety and security of the company's status. The primary purpose of SOC is to enable better incident detection, investigation, and response capabilities by using data from endpoint devices, logs, security systems, and network flows. Moreover, an efficient SOC can help the organizations enhance the ability of situational awareness and increase the deployment of enterprise resources to mitigate the security issues. However, the cyber threats are the significant challenges for SOC. In this paper, the authors expressed some security threats towards SOC and several solutions to fight against them.\",\"PeriodicalId\":126087,\"journal\":{\"name\":\"2018 IEEE 12th International Symposium on Applied Computational Intelligence and Informatics (SACI)\",\"volume\":\"35 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2018-05-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"16\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2018 IEEE 12th International Symposium on Applied Computational Intelligence and Informatics (SACI)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/SACI.2018.8440963\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 IEEE 12th International Symposium on Applied Computational Intelligence and Informatics (SACI)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SACI.2018.8440963","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Security Concerns Towards Security Operations Centers
A security operations center (SOC) is a centralized place for monitoring and frequently managing the safety and security of the company's status. The primary purpose of SOC is to enable better incident detection, investigation, and response capabilities by using data from endpoint devices, logs, security systems, and network flows. Moreover, an efficient SOC can help the organizations enhance the ability of situational awareness and increase the deployment of enterprise resources to mitigate the security issues. However, the cyber threats are the significant challenges for SOC. In this paper, the authors expressed some security threats towards SOC and several solutions to fight against them.