PRE-ICIS WORKSHOP ON INFORMATION SECURITY AND PRIVACY (SIGSEC) (2012)
2012
Metrics
40 Record Views
Abstract
Securing and defending computing networks has become a matter of growing importance attracting the attention of both practitioners and researchers. Among the suite of tools available to network managers to monitor and secure their networks are Intrusion Detection Systems (IDS); software and hardware systems designed and programmed to automate the process of monitoring networks and analyzing them for potential breaches. One of the challenges presented by IDSs is how do network managers prioritize and commit resources to investigate notification by an IDS of potential threats to the network. In this paper, we consider this problem and propose heuristic algorithms for how network managers can optimally allocate their limited resources for investigating IDS notifications.
Files and links (1)
url
IDS Alarms Investigation with Limited ResourcesView
Conference proceeding entryConference paper link
Related links
Details
Title
IDS Alarms Investigation with Limited Resources
Publication Details
WISP 2012 Proceedings
Resource Type
Conference proceeding
Conference
PRE-ICIS WORKSHOP ON INFORMATION SECURITY AND PRIVACY (SIGSEC) (2012)
Publisher
AIS Electronic Library (AISeL)
Format
link
Number of pages
15
Identifiers
99380459697006600
Academic Unit
Computer Science; Hal Marcus College of Science and Engineering