Direkt zum Inhalt

Leitner, Maria ; Skopik, Florian ; Pahi, Timea

Operational cyber incident coordination revisited: providing cyber situational awareness across organizations and countries

Leitner, Maria , Skopik, Florian und Pahi, Timea (2024) Operational cyber incident coordination revisited: providing cyber situational awareness across organizations and countries. Information Security Journal: A Global Perspective 33 (5), S. 486-507.

Veröffentlichungsdatum dieses Volltextes: 24 Sep 2024 08:14
Artikel
DOI zum Zitieren dieses Dokuments: 10.5283/epub.59245


Zusammenfassung

Cyber situational awareness (CSA) is a prerequisite for justified decision-making and to maintain cyber security. This becomes particularly complex when establishing inter-organizational awareness across sectors. For example, computer security incident response teams (CSIRTs) and national cyber security centers need to establish CSA among countries when coordinating regional cyber incident ...

Cyber situational awareness (CSA) is a prerequisite for justified decision-making and to maintain cyber security. This becomes particularly complex when establishing inter-organizational awareness across sectors. For example, computer security incident response teams (CSIRTs) and national cyber security centers need to establish CSA among countries when coordinating regional cyber incident response. Today’s state of the art of information sharing across larger numbers of organizations is often still the least common denominator in the shape of web-based forms and email reports. These are easily applicable by almost everyone who wants to report findings even in stressful situations. However, these do not prove to be efficient for the coordinator that aggregates and merges the data. Therefore, a cyber coordination platform using online surveys is proposed. This approach uses surveys to collect, aggregate and visualize data in a dashboard to support cyber coordination and knowledge management. Furthermore, the online surveys are easy to use and respond to and therefore simplify the participation of stakeholders. We propose an architecture and implement a prototype using popular web application frameworks. The evaluation in a user study revealed promising results with respect to increased efficiency and decreased resource requirements for establishing situational awareness.



Beteiligte Einrichtungen


Details

DokumentenartArtikel
Titel eines Journals oder einer ZeitschriftInformation Security Journal: A Global Perspective
Verlag:Taylor & Francis
Band:33
Nummer des Zeitschriftenheftes oder des Kapitels:5
Seitenbereich:S. 486-507
Datum18 April 2024
InstitutionenInformatik und Data Science > Fachbereich Wirtschaftsinformatik > Lehrstuhl für KI in der IT-Sicherheit (Prof. Dr. Maria Leitner)
Identifikationsnummer
WertTyp
10.1080/19393555.2024.2334787DOI
Stichwörter / KeywordsCoordination and cooperation platform, cyber situational awareness, incident coordination, cyber security
Dewey-Dezimal-Klassifikation000 Informatik, Informationswissenschaft, allgemeine Werke > 004 Informatik
StatusVeröffentlicht
BegutachtetJa, diese Version wurde begutachtet
An der Universität Regensburg entstandenNein
URN der UB Regensburgurn:nbn:de:bvb:355-epub-592456
Dokumenten-ID59245

Bibliographische Daten exportieren

Nur für Besitzer und Autoren: Kontrollseite des Eintrags

nach oben