作者
Tao Lin, Chen Zhong, John Yen, Peng Liu
发表日期
2018
期刊
From Database to Cyber Security: Essays Dedicated to Sushil Jajodia on the Occasion of His 70th Birthday
页码范围
227-243
出版商
Springer International Publishing
简介
Triage analysis is a fundamental stage in cyber operations in Security Operations Centers (SOCs). The massive data sources generate great demands on cyber security analysts’ capability of information processing and analytical reasoning. Furthermore, most junior security analysts perform much less efficiently than senior analysts in deciding what data triage operations to perform. To help (junior) analysts perform better, several retrieval methods have been proposed to facilitate data triaging through retrieval of the relevant historical data triage operations of senior security analysts. This paper conducts a review of the existing retrieval methods, including rule-based retrieval and context-based retrieval of data triage operations. It further discusses the new directions in solving the data triage operation retrieval problem.
引用总数
20142015201620172018201920202021202220231411162234323852
学术搜索中的文章
T Lin, C Zhong, J Yen, P Liu - From Database to Cyber Security: Essays Dedicated to …, 2018