Adaptive Security Event Visualization for Continuous Monitoring

The field of information security routinely produces the need for a security information and event management system operator who would be capable of durable and extensive (e.g., workday-long) monitoring of the system in his control with well-timed decision making in emergencies. The obvious concern...

Full description

Bibliographic Details
Main Authors: Anatoly Valerievich Elizarov, Denis Yurievich Gamayunov
Format: Article
Language:English
Published: Moscow Engineering Physics Institute 2014-09-01
Series:Bezopasnostʹ Informacionnyh Tehnologij
Subjects:
Online Access:https://bit.mephi.ru/index.php/bit/article/view/174
Description
Summary:The field of information security routinely produces the need for a security information and event management system operator who would be capable of durable and extensive (e.g., workday-long) monitoring of the system in his control with well-timed decision making in emergencies. The obvious concern is that such continuous exertion is bound to lead to the operator’s increased fatigue, reduced attention span, and flawed decision making. This paper proposes methods of the visualization system’s adaptation to these changes for improving the operator’s efficiency in terms of speed and accuracy.
ISSN:2074-7128
2074-7136