...
首页> 外文期刊>Journal of Cyber Security Technology >Challenges and performance metrics for security operations center analysts: a systematic review
【24h】

Challenges and performance metrics for security operations center analysts: a systematic review

机译:安全运营中心分析师的挑战和绩效指标:系统评价

获取原文
获取原文并翻译 | 示例

摘要

The increasing use of Security Operations Centers (SOCs) by organisations as a part of their cyber security strategy has led to several studies aiming to understand and improve SOC operations. However, to the best of our knowledge, there is no systematic literature review on the challenges faced by SOC analysts or on metrics for measuring analysts performance. To this end, we conducted a Systematic Literature Review (SLR) in accordance with the guidelines for undertaking SLR and analyzed papers published on SOCs between 2008 and 2018. We provide a comprehensive overview of the challenges faced by SOC analysts and of the metrics suggested in the literature for measuring analysts performance. In addition, we present a mapping between the challenges and existing performance metrics showing how the effectiveness of an analyst in addressing a particular challenge could be measured. We also discuss the drawbacks of the existing metrics and suggest directions for improvement. Our findings will enable SOC analysts and managers, as well as the academic community to gain a better understanding of the challenges impeding the performance of SOC analysts, and how analysts performance could be measured and improved.
机译:组织作为其网络安全战略的一部分的越来越多的安全运营中心(SOC)导致了几项旨在理解和改进SoC操作的研究。然而,据我们所知,对SOC分析师或测量分析师表现的指标面临的挑战没有系统的文献综述。为此,我们按照开展单反的指导方针进行了系统的文献综述(SLR),并分析了2008年至2018年之间的SOC。我们提供了全面概述了SOC分析师和所建议的指标所面临的挑战测量分析师表现的文献。此外,我们展示了挑战和现有性能指标之间的映射,展示了分析师在解决特定挑战方面的有效性如何进行衡量。我们还讨论了现有指标的缺点,并建议改进方向。我们的调查结果将使SoC分析师和管理人员以及学术界,更好地了解阻碍SoC分析师绩效的挑战,以及分析师如何衡量和改进。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号