Title
Ocelot: user-centered design of a decision support visualization for network quarantine
Abstract
Most cyber security research is focused on detecting network intrusions or anomalies through the use of automated methods, exploratory visual analytics systems, or real-time monitoring using dynamic visual representations. However, there has been minimal investigation of effective decision support systems for cyber analysts. This paper describes the user-centered design and development of a decision support visualization for active network defense. Ocelot helps the cyber analyst assess threats to a network and quarantine affected computers from the healthy parts of a network. The described web-based, functional visualization prototype integrates and visualizes multiple data sources through the use of a hybrid space partitioning tree and node link diagram. We describe our design process for requirements gathering and design feedback which included expert interviews, iterative design, and a user study.
Year
DOI
Venue
2015
10.1109/VIZSEC.2015.7312763
2015 IEEE Symposium on Visualization for Cyber Security (VizSec)
Keywords
Field
DocType
Ocelot,user-centered design,decision support visualization,network quarantine,cybersecurity,network intrusion detection,anomalies,decision support systems,active network defense,Web-based functional visualization prototype,hybrid space partitioning tree,node link diagram
Data mining,Data visualization,Information visualization,Visualization,Computer security,Computer science,Decision support system,Visual analytics,Requirements analysis,Iterative design,User-centered design
Conference
ISSN
Citations 
PageRank 
2639-4359
10
0.74
References 
Authors
25
7
Name
Order
Citations
PageRank
Dustin Lockhart Arendt1172.17
Russ Burtner2222.58
Daniel M. Best3544.95
Nathan Bos450246.15
John Gersh5423.61
Christine D. Piatko6374.53
Celeste Lyn Paul7100.74