• Title/Summary/Keyword: Security Event Correlations

Search Result 3, Processing Time 0.017 seconds

Utilization of Physical Security Events for the Converged Security using Analytic Hierarchy Process: focus on Information Security (계층분석과정을 이용한 융합보안을 위한 물리 보안 이벤트 활용: 정보 보안 중심)

  • Kang, Koo-Hong;Kang, Dong-Ho;Nah, Jung-Chan;Kim, Ik-Kyun
    • Journal of the Korea Institute of Information Security & Cryptology
    • /
    • v.22 no.3
    • /
    • pp.553-564
    • /
    • 2012
  • Today's security initiatives tend to integrate the physical and information securities which have been run by completely separate departments. That is, the converged security management becomes the core in the security market trend. However, to the best of our knowledge, we cannot find any solutions how to combine these two security events for the converged security. In this paper, we propose an information security object-driven approach which utilizes the physical security events to enhance and improve the information security. For scalability, we also present a systematic method using the analytic hierarchy process finding the meaningful event combinations among the large number of physical security events. In particular, we show the whole implementation processes in detail where we consider the information security object 'illegal computing system access' combined with two physical security devices - access controller and CCTV+video analyzer system.

The Relationship between Safe guard Accomplishment Personality and Stress Coping Behavior (민간경호${\cdot}$경비원의 개인적 특성에 따른 직무 스트레스의 반향관계)

  • Gong, Bae-Wan;Kim, Chang-Ho
    • Korean Security Journal
    • /
    • no.10
    • /
    • pp.15-34
    • /
    • 2005
  • 1. There was significant relationship between personality traits and coping behavior. (1) Type A Group used more problem-focused and emotion-focused coping style than Type B Group (2) Non-sociable group used more emotion-focused coping style especially 'escape-avoidance' behavior than sociable group (3) Emotionally unstable group used more emotion-focused coping style especially 'distancing' and 'escape-avoidance behavior than stable group. 2. There was no significant relationship between personality traits and stress coping effect except emotional stability. 3. There was same inter-correlations among personality, coping style, and coping effect, (1) Type A was significantly correlated with sociability but not with emotional stability. (2) Problem-focused coping style was positively correlated with emotion-focused coping style. (3) Coping effect was not significantly correlated with coping style and personality traits accept emotional stability. 4. There was significant relationship between cognitive appraisal and coping style. (1) When they appraised the event 'could change or did something about it,' that used more problem-focused coping style than appraised 'had to accept.' (2) When they appraised the event ' could control before it occures.' they used more problem-focused and emotion-focused coping style than appraised it 'could not control'. (3) When they appraised the event 'had to gold back.' they used more problem-focused and emotion-focused coping style than appraised it 'had not to hold back.' (4) When they appraised the event 'happened by me.' they used more problem-focused coping style than appraised it 'happened by others.' (5) When they appraised the event 'needed to know more, 'they did not significantly use more coping behavior than appraised it 'needed not to know more.' 5. There was no significant difference except two cases in cognitive appraisal to the problem according to the personality. The two cases were as follows: (1) Sociability group appraised the event 'had to accept.' while non-sociability group appraised it 'could change or did some thing about.' (2) Emotionally stable group appraised the event 'happened by others.' while emotionally unstable group appraised it "happened by me".

  • PDF

Implementation of Security Information and Event Management for Realtime Anomaly Detection and Visualization (실시간 이상 행위 탐지 및 시각화 작업을 위한 보안 정보 관리 시스템 구현)

  • Kim, Nam Gyun;Park, Sang Seon
    • Asia-pacific Journal of Multimedia Services Convergent with Art, Humanities, and Sociology
    • /
    • v.8 no.5
    • /
    • pp.303-314
    • /
    • 2018
  • In the past few years, government agencies and corporations have succumbed to stealthy, tailored cyberattacks designed to exploit vulnerabilities, disrupt operations and steal valuable information. Security Information and Event Management (SIEM) is useful tool for cyberattacks. SIEM solutions are available in the market but they are too expensive and difficult to use. Then we implemented basic SIEM functions to research and development for future security solutions. We focus on collection, aggregation and analysis of real-time logs from host. This tool allows parsing and search of log data for forensics. Beyond just log management it uses intrusion detection and prioritize of security events inform and support alerting to user. We select Elastic Stack to process and visualization of these security informations. Elastic Stack is a very useful tool for finding information from large data, identifying correlations and creating rich visualizations for monitoring. We suggested using vulnerability check results on our SIEM. We have attacked to the host and got real time user activity for monitoring, alerting and security auditing based this security information management.