Network Security Intelligence Center as a combination of SIC and NOC

Natalia Georgievna Miloslavskaya · Procedia Computer Science · 2018

In modern networks, information security (IS) incidents have become not only numerous and diverse, but more damaging and disruptive. According to 2017 Cyber Attacks Statistics from hackmaggedon.com, among top attacks are malware, account and DNS hijacking, targeted attacks, DDoS, defacements, malvertising, and SQL injection. Various preventive controls based on IS risk assessment results decrease the majority, but not all IS incidents. Any delay and only reactive actions to IS incidents puts organization’s assets under risk. Therefore, an IS incident management system has become an integral part of the whole organization’s governance system. Thus, in this paper, we propose to unite together all advantages of a Security Intelligence Center and a Network Operations Center in a unified Network Security Intelligence Center (NSIC).

Read the paper · More papers on PaperTik