Article (Périodiques scientifiques)
VSOC - A Virtual Security Operating Center
FALK, Eric; FIZ PONTIVEROS, Beltran; Repcek, Stefan et al.
2017In Global Communications
Peer reviewed
 

Documents


Texte intégral
vsoc-preprint.pdf
Preprint Auteur (930.85 kB)
Demander un accès

Tous les documents dans ORBilu sont protégés par une licence d'utilisation.

Envoyer vers



Détails



Résumé :
[en] Security in virtualised environments is becoming increasingly important for institutions, not only for a firm’s own on-site servers and network but also for data and sites that are hosted in the cloud. Today, security is either handled globally by the cloud provider, or each customer needs to invest in its own security infrastructure. This paper proposes a Virtual Security Operation Center (VSOC) that allows to collect, analyse and visualize security related data from multiple sources. For instance, a user can forward log data from its firewalls, applications and routers in order to check for anomalies and other suspicious activities. The security analytics provided by the VSOC are comparable to those of commercial security incident and event management (SIEM) solutions, but are deployed as a cloud-based solution with the additional benefit of using big data processing tools to handle large volumes of data. This allows us to detect more complex attacks that cannot be detected with todays signature-based (i.e. rules) SIEM solutions.
Disciplines :
Sciences informatiques
Auteur, co-auteur :
FALK, Eric ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
FIZ PONTIVEROS, Beltran ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Repcek, Stefan
HOMMES, Stefan ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
STATE, Radu  ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Sasnauskas, Raimondas;  SES Engineering
Co-auteurs externes :
no
Langue du document :
Anglais
Titre :
VSOC - A Virtual Security Operating Center
Date de publication/diffusion :
07 décembre 2017
Titre du périodique :
Global Communications
ISSN :
0195-2250
Maison d'édition :
IEEE
Peer reviewed :
Peer reviewed
Focus Area :
Computational Sciences
Disponible sur ORBilu :
depuis le 18 décembre 2017

Statistiques


Nombre de vues
245 (dont 10 Unilu)
Nombre de téléchargements
1 (dont 1 Unilu)

citations Scopus®
 
4
citations Scopus®
sans auto-citations
4
citations OpenAlex
 
6
citations WoS
 
3

Bibliographie


Publications similaires



Contacter ORBilu