Публікація: Analysis of correlation rules in Security information and event management systems
Завантаження...
Дата
Автори
Назва журналу
ISSN журналу
Назва тому
Видавець
ХНУРЕ
Анотація
This article discusses the main components of information security systems and information security incident management. The methods of non-signature, as well as signature analysis of rules and decision-making that are used in such systems are considered. The analysis of existing methods of correlation rules. The main types of each method have been identified.
Опис
Ключові слова
correlation, information security management, signature method, non-signature method, incident security, event security, SIEM
Цитування
Sievierinov O. Analysis of correlation rules in Security information and event management systems / О. Sievierinov, M. Ovcharenko // Fourth International Scientific and Technical Conference «COMPUTER AND INFORMATION SYSTEMS AND TECHNOLOGIES», 22-23.04.2020. – Kharkiv: NURE, 2020. – С. 24–25.