The Importance of Information Sharing and Its Numerous Dimensions to Circumvent Incidents and Mitigate Cyber Threats 1

Florian Skopik, Giuseppe Settanni, Roman Fiedler · Auerbach Publications eBooks · 2017

European and the American regulations aim at achieving cyber resilience enhancing cooperation between public and private sectors in order to improve capacities, resources, and processes to address cyber threats in critical infrastructures. This chapter describes the various dimensions of cybersecurity information sharing that need to be considered. It discusses relevant regulations, standards, concepts, supporting tools, and protocols that are essential for setting up effective information-sharing procedures. The chapter outlines cooperation and coordination aspects and presents some sample sharing scenarios. It reviews existing regulatory directives and legal recommendations. The chapter covers concrete implementations in terms of organizational structures. It deals with technologies, tools, and applicable protocols. The chapter also reviews the applicability of existing solutions in a large-scale national security information-sharing network. The US National Institute of Technology (NIST) supports the coordination of existing Computer Security Incident Response Teams (CSIRTs), when responding to computer security incidents, by identifying technical standards, methodologies, procedures, and processes related to Computer Security Incident Coordination (CSIC).

Read the paper · More papers on PaperTik