CYCRDCIRNIJul 8, 2020

NERD: Neural Network for Edict of Risky Data Streams

arXiv:2007.07753v11 citations
Originality Synthesis-oriented
AI Analysis

This addresses the challenge of handling cyber incidents for organizations, but it appears incremental as it builds on existing monitoring tools and AI methods.

The paper tackles the problem of complex decision-making in cyber incident handling by developing a support system that uses multiple data sources and over twenty key attributes to identify and prioritize incidents, and it shows that the prototype sustainably improves decision-making and makes the process more effective.

Cyber incidents can have a wide range of cause from a simple connection loss to an insistent attack. Once a potential cyber security incidents and system failures have been identified, deciding how to proceed is often complex. Especially, if the real cause is not directly in detail determinable. Therefore, we developed the concept of a Cyber Incident Handling Support System. The developed system is enriched with information by multiple sources such as intrusion detection systems and monitoring tools. It uses over twenty key attributes like sync-package ratio to identify potential security incidents and to classify the data into different priority categories. Afterwards, the system uses artificial intelligence to support the further decision-making process and to generate corresponding reports to brief the Board of Directors. Originating from this information, appropriate and detailed suggestions are made regarding the causes and troubleshooting measures. Feedback from users regarding the problem solutions are included into future decision-making by using labelled flow data as input for the learning process. The prototype shows that the decision making can be sustainably improved and the Cyber Incident Handling process becomes much more effective.

Foundations

The foundational work for this paper's niche, ranked by how specifically the neighbourhood builds on it — not by global fame.

Your Notes