FIELD: information security.
SUBSTANCE: technical result is achieved when implementing a method for predicting signs of information security incidents in an automated control system, in which performing: collecting events from heterogeneous sources, aggregating events to reduce the number of recurring events, determining the category of events, normalizing events in accordance with the category, enrichment of incoming events with missing and additional information for correct operation of correlation rules, determination of cause-and-effect relationships between normalized and information-enriched events to identify significant information and predict information security incidents, recording in a chronological sequence of events received from sources into an event database, displaying screen notifications on predicted information security incidents on a console.
EFFECT: high efficiency of predicting signs of information security incidents by information protection and event management systems in automated control systems.
1 cl, 2 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF AUTOMATIC INVESTIGATION OF SAFETY INCIDENTS IN AUTOMATED SYSTEM | 2017 |
|
RU2664018C1 |
SYSTEM AND METHOD OF CORRELATING EVENTS FOR DETECTING INFORMATION SECURITY INCIDENT | 2019 |
|
RU2739864C1 |
METHOD OF CONSTRUCTING SYSTEM FOR DETECTING INFORMATION SECURITY INCIDENTS IN AUTOMATED CONTROL SYSTEMS | 2020 |
|
RU2742179C1 |
SYSTEM AND METHOD OF INTERCEPTING FILE STREAMS | 2023 |
|
RU2816551C1 |
SYSTEM AND METHOD FOR PREVENTION SAFETY INCIDENTS BASED ON USER DANGER RATING | 2011 |
|
RU2477929C2 |
INTELLIGENT RISK AND VULNERABILITY MANAGEMENT SYSTEM FOR INFRASTRUCTURE ELEMENTS | 2020 |
|
RU2747476C1 |
METHOD OF COMPUTER SECURITY DISTRIBUTED EVENTS INVESTIGATION | 2015 |
|
RU2610395C1 |
INFORMATION SECURITY INCIDENT RESPONSE SYSTEM AND METHOD | 2023 |
|
RU2824732C1 |
INTELLIGENT CONTROL SYSTEM FOR CYBERTHREATS | 2019 |
|
RU2702269C1 |
METHOD FOR FILTERING EVENTS FOR TRANSMISSION TO REMOTE DEVICE | 2022 |
|
RU2813239C1 |
Authors
Dates
2024-03-19—Published
2023-04-11—Filed