Security Zone Infrastructure for Network Security Intelligence Centers
Natalia Georgievna Miloslavskaya · Procedia Computer Science · 2020
Today’s businesses need to enhance their security via quick adaptation to the challenges of modern perimeterless network security. Under numerous targeted network attacks, the lack of advanced threat detection and response capabilities, as well as busy information technology and information security teams, lacked in-depth security expertise exacerbate the situation. In this landscape, the well-known “Detect-Investigate-Respond” triad must be added by the fourth very critical component named “Adapt”, which should be based on Security Intelligence approach. In this paper, continuing our research on designing a Network Security Intelligence Center as a combination of a Security Intelligence Center and a Network Operations Center we propose the NSIC’s security zone infrastructure with five zones, a few subzones and sandboxing. Future areas of research are indicated.