Безопасность информационных технологий (Sep 2014)

Adaptive Security Event Visualization for Continuous Monitoring

  • Anatoly Valerievich Elizarov,
  • Denis Yurievich Gamayunov

Journal volume & issue
Vol. 21, no. 3

Abstract

Read online

The field of information security routinely produces the need for a security information and event management system operator who would be capable of durable and extensive (e.g., workday-long) monitoring of the system in his control with well-timed decision making in emergencies. The obvious concern is that such continuous exertion is bound to lead to the operator’s increased fatigue, reduced attention span, and flawed decision making. This paper proposes methods of the visualization system’s adaptation to these changes for improving the operator’s efficiency in terms of speed and accuracy.

Keywords