Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
skip to main content
10.1109/CyberSecurity.2012.18guideproceedingsArticle/Chapter ViewAbstractPublication PagesConference Proceedingsacm-pubtype
Article

Gaining Big Picture Awareness through an Interconnected Cross-Layer Situation Knowledge Reference Model

Published: 14 December 2012 Publication History

Abstract

In both military operations and the commercial world, cyber situation awareness (SA) is a key element of mission assurance. Due to the needs for mission damage and impact assessment and asset identification (and prioritization), cyber SA is beyond intrusion detection and attack graph analysis. In this paper, we propose a cross-layer situation knowledge reference model (SKRM) to address the unique cyber SA needs of real-world missions. SKRM provides new insight on how to break the "stovepipes" created by isolated situation knowledge collectors and gain comprehensive level big picture awareness. Through a concrete case study, we show that SKRM is the key enabler for two SA capabilities beyond intrusion detection and attack graph analysis. The potentials and the current limitations of SKRM and SKRM-enabled analysis are also discussed.

Cited By

View all
  • (2018)Mission-Centric Risk Assessment to Improve Cyber Situational AwarenessProceedings of the 13th International Conference on Availability, Reliability and Security10.1145/3230833.3233281(1-8)Online publication date: 27-Aug-2018
  • (2015)Who Touched My MissionProceedings of the 2015 Workshop on Automated Decision Making for Active Cyber Defense10.1145/2809826.2809834(21-26)Online publication date: 12-Oct-2015
  • (2014)Targeted Attacks against Industrial Control SystemsProceedings of the 2nd Workshop on Smart Energy Grid Security10.1145/2667190.2667192(13-22)Online publication date: 7-Nov-2014

Recommendations

Comments

Information & Contributors

Information

Published In

cover image Guide Proceedings
CYBERSECURITY '12: Proceedings of the 2012 International Conference on Cyber Security
December 2012
212 pages
ISBN:9780769550145

Publisher

IEEE Computer Society

United States

Publication History

Published: 14 December 2012

Author Tags

  1. Cyber situation awareness
  2. asset identification and prioritization
  3. damage and impact assessment
  4. mission-driven analytics

Qualifiers

  • Article

Contributors

Other Metrics

Bibliometrics & Citations

Bibliometrics

Article Metrics

  • Downloads (Last 12 months)0
  • Downloads (Last 6 weeks)0
Reflects downloads up to 03 Oct 2024

Other Metrics

Citations

Cited By

View all
  • (2018)Mission-Centric Risk Assessment to Improve Cyber Situational AwarenessProceedings of the 13th International Conference on Availability, Reliability and Security10.1145/3230833.3233281(1-8)Online publication date: 27-Aug-2018
  • (2015)Who Touched My MissionProceedings of the 2015 Workshop on Automated Decision Making for Active Cyber Defense10.1145/2809826.2809834(21-26)Online publication date: 12-Oct-2015
  • (2014)Targeted Attacks against Industrial Control SystemsProceedings of the 2nd Workshop on Smart Energy Grid Security10.1145/2667190.2667192(13-22)Online publication date: 7-Nov-2014

View Options

View options

Get Access

Login options

Media

Figures

Other

Tables

Share

Share

Share this Publication link

Share on social media