A Recursive PLS (Partial Least Squares) based Approach for Enterprise Threat Management

06/23/2018
by   Janardan Misra, et al.
0

Most of the existing solutions to enterprise threat management are preventive approaches prescribing means to prevent policy violations with varying degrees of success. In this paper we consider the complementary scenario where a number of security violations have already occurred, or security threats, or vulnerabilities have been reported and a security administrator needs to generate optimal response to these security events. We present a principled approach to study and model the human expertise in responding to the emergent threats owing to these security events. A recursive Partial Least Squares based adaptive learning model is defined using a factorial analysis of the security events together with a method for estimating the effect of global context dependent semantic information used by the security administrators. Presented model is theoretically optimal and operationally recursive in nature to deal with the set of security events being generated continuously. We discuss the underlying challenges and ways in which the model could be operationalized in centralized versus decentralized, and real-time versus batch processing modes.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
05/08/2020

Convergence of IT and SCADA: Associated Security Threats and Vulnerabilities

As many industries shift towards centralised controlled information syst...
research
11/12/2018

SD-WAN Threat Landscape

Software Defined Wide Area Network (SD-WAN or SDWAN) is a modern concept...
research
10/10/2022

A Prospective Analysis of Security Vulnerabilities within Link Traversal-Based Query Processing (Extended Version)

The societal and economical consequences surrounding Big Data-driven pla...
research
06/16/2020

An STPA-based Approach for Systematic Security Analysis of In-vehicle Diagnostic and Software Update Systems

The in-vehicle diagnostic and software update system, which supports rem...
research
06/05/2023

Sustainable Adaptive Security

With software systems permeating our lives, we are entitled to expect th...
research
08/24/2018

"Should I Worry?" A Cross-Cultural Examination of Account Security Incident Response

Digital security technology is able to identify and prevent many threats...
research
01/11/2019

How Good is Your Data? Investigating the Quality of Data Generated During Security Incident Response Investigations

An increasing number of cybersecurity incidents prompts organizations to...

Please sign up or login with your details

Forgot password? Click here to reset