Title
Closing the loop of SIEM analysis to Secure Critical Infrastructures.
Abstract
Critical Infrastructure Protection is one of the main challenges of last years. Security Information and Event Management (SIEM) systems are widely used for coping with this challenge. However, they currently present several limitations that have to be overcome. In this paper we propose an enhanced SIEM system in which we have introduced novel components to i) enable multiple layer data analysis; ii) resolve conflicts among security policies, and discover unauthorized data paths in such a way to be able to reconfigure network devices. Furthermore, the system is enriched by a Resilient Event Storage that ensures integrity and unforgeability of events stored
Year
Venue
Field
2014
CoRR
Computer security,Computer science,Networking hardware,Critical infrastructure protection,Security policy,Security information and event management
DocType
Volume
Citations 
Journal
abs/1405.2995
0
PageRank 
References 
Authors
0.34
2
5
Name
Order
Citations
PageRank
Alessia Garofalo1243.63
Cesario Di Sarno2344.68
Ilaria Matteucci327034.37
Marco Vallini4324.22
Valerio Formicola5607.90