Direkt zum Inhalt

Empl, Philip ; Schlette, Daniel ; Zupfer, Daniel ; Pernul, Günther

SOAR4IoT: Securing IoT Assets with Digital Twins

Empl, Philip , Schlette, Daniel , Zupfer, Daniel und Pernul, Günther (2022) SOAR4IoT: Securing IoT Assets with Digital Twins. In: ARES 2022: The 17th International Conference on Availability, Reliability and Security, August 23 - 26, 2022, Vienna Austria.

Veröffentlichungsdatum dieses Volltextes: 24 Aug 2022 11:57
Konferenz- oder Workshop-Beitrag
DOI zum Zitieren dieses Dokuments: 10.5283/epub.52801


Zusammenfassung

As more and more security tools provide organizations with cybersecurity capabilities, security analysts are overwhelmed by security events. Resolving these events is challenging due to extensive manual processes, limited financial resources, and human errors. Security Orchestration, Automation, and Response (SOAR) is an established approach to manage security tools and assets. However, SOAR ...

As more and more security tools provide organizations with cybersecurity capabilities, security analysts are overwhelmed by security events. Resolving these events is challenging due to extensive manual processes, limited financial resources, and human errors. Security Orchestration, Automation, and Response (SOAR) is an established approach to manage security tools and assets. However, SOAR platforms typically integrate traditional IT systems only. Additional considerations are required to deal with the Internet of Things (IoT), its multiple devices and complex networks. Therefore, we adapt SOAR to IoT. We first aggregate existing research and information on SOAR and SOAR platforms. We envision the SOAR4IoT framework, making IoT assets manageable for SOAR via middleware. We implement a prototypical digital twin-based SOAR application integrating IoT assets and security tools to validate our framework. The experimental setup includes two playbooks coping with Mirai and Sybil attacks. Results show feasibility as our SOAR application enables securing IoT assets with digital twins.



Beteiligte Einrichtungen


Details

DokumentenartKonferenz- oder Workshop-Beitrag (Nicht ausgewählt)
ISBN978-1-4503-9670-7
Buchtitel:ARES '22: Proceedings of the 17th International Conference on Availability, Reliability and Security
Verlag:Association for Computing Machinery
Ort der Veröffentlichung:New York, NY, USA
Sonstige Reihe:ARES '22
Nummer des Zeitschriftenheftes oder des Kapitels:4
Seitenbereich:S. 1-10
Datum23 August 2022
InstitutionenWirtschaftswissenschaften > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Informatik und Data Science > Fachbereich Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Identifikationsnummer
WertTyp
10.1145/3538969.3538975DOI
Stichwörter / KeywordsInternet of Things, SOAR, Incident Response, Digital Twin, Security Orchestration
Dewey-Dezimal-Klassifikation000 Informatik, Informationswissenschaft, allgemeine Werke > 004 Informatik
300 Sozialwissenschaften > 330 Wirtschaft
StatusVeröffentlicht
BegutachtetJa, diese Version wurde begutachtet
An der Universität Regensburg entstandenJa
URN der UB Regensburgurn:nbn:de:bvb:355-epub-528011
Dokumenten-ID52801

Bibliographische Daten exportieren

Nur für Besitzer und Autoren: Kontrollseite des Eintrags

nach oben