A graph-based representation of relations in network security alert sharing platforms
Title | A graph-based representation of relations in network security alert sharing platforms |
Publication Type | Conference Paper |
Year of Publication | 2017 |
Authors | Husak, M., Čermák, M. |
Conference Name | 2017 IFIP/IEEE Symposium on Integrated Network and Service Management (IM) |
Keywords | Collaboration, composability, computer network security, Databases, edge detection, graph database, graph-based representation, Image edge detection, Intrusion detection, Metrics, Monitoring, network security alert sharing platforms, pubcrawl, resilience, Resiliency, Scalability, security, Sensors, situational awareness tool, visual guide |
Abstract | In this paper, we present a framework for graph-based representation of relation between sensors and alert types in a security alert sharing platform. Nodes in a graph represent either sensors or alert types, while edges represent various relations between them, such as common type of reported alerts or duplicated alerts. The graph is automatically updated, stored in a graph database, and visualized. The resulting graph will be used by network administrators and security analysts as a visual guide and situational awareness tool in a complex environment of security alert sharing. |
URL | https://ieeexplore.ieee.org/document/7987399 |
DOI | 10.23919/INM.2017.7987399 |
Citation Key | husak_graph-based_2017 |
- Monitoring
- visual guide
- situational awareness tool
- sensors
- security
- Scalability
- Resiliency
- resilience
- pubcrawl
- network security alert sharing platforms
- collaboration
- Metrics
- Intrusion Detection
- Image edge detection
- graph-based representation
- graph database
- edge detection
- Databases
- computer network security
- composability