...
首页> 外文期刊>International Journal of Information Management >Real-time analytics, incident response process agility and enterprise cybersecurity performance: A contingent resource-based analysis
【24h】

Real-time analytics, incident response process agility and enterprise cybersecurity performance: A contingent resource-based analysis

机译:实时分析,事件响应过程敏捷性和企业网络安全性能:基于竞争资源的分析

获取原文
获取原文并翻译 | 示例
           

摘要

Emerging paradigms of attack challenge enterprise cybersecurity with sophisticated custom-built tools, unpredictable patterns of exploitation, and an increasing ability to adapt to cyber defenses. As a result, organizations continue to experience incidents and suffer losses. The responsibility to respond to cybersecurity incidents lies with the incident response (IR) function. We argue that (1) organizations must develop 'agility' in their IR process to respond swiftly and efficiently to sophisticated and potent cyber threats, and (2) Real-time analytics (RTA) gives organizations a unique opportunity to drive their IR process in an agile manner by detecting cybersecurity incidents quickly and responding to them proactively. To better understand how organizations can use RTA to enable IR agility, we analyzed in-depth data from twenty expert interviews using a contingent resource-based view. The results informed a framework explaining how organizations enable agile characteristics (swiftness, flexibility, and innovation) in the IR process using the key features of the RTA capability (complex event processing, decision automation, and on-demand and continuous data analysis) to detect and respond to cybersecurity incidents as-they-occur which, in turn, improves their overall enterprise cybersecurity performance.
机译:攻击攻击范式挑战企业网络安全,具有复杂的定制工具,不可预测的剥削模式,以及适应网络防御的越来越多的能力。因此,组织继续遇到事件并遭受损失。响应网络安全事故的责任在于事件响应(IR)职能。我们认为(1)组织必须在IR过程中发展“敏捷”,以迅速,高效地回应复杂和有效的网络威胁,(2)实时分析(RTA)为组织提供了一个驾驶IR流程的独特机会通过快速检测网络安全事件并积极响应他们的敏捷方式。为了更好地了解组织如何使用RTA来启用IR敏捷性,我们使用基于队列资源的视图分析了20个专家访谈的深入数据。结果通知了一个框架,解释了组织如何使用RTA能力的关键特征(复杂的事件处理,决策自动化和按需和连续数据分析)来检测IR流程中的ARILE的特征(SWIFTINGS,灵活性和创新)。并回应他们的网络安全事件 - 他们发生,反过来,这改善了他们的整体企业网络安全性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号