首页> 外文期刊>Cognition, Technology & Work >Measuring team effectiveness in cyber-defense exercises: a cross-disciplinary case study
【24h】

Measuring team effectiveness in cyber-defense exercises: a cross-disciplinary case study

机译:在网络防御演习中衡量团队效能:跨学科案例研究

获取原文
获取原文并翻译 | 示例
           

摘要

In 2010, IT-security experts from northern European governments and organizations gathered to conduct the first of a series of NATO-led cyber-defense exercises in a pilot attempt of training cyber defense. To gain knowledge on how to assess team effectiveness in cyber-defense exercises, this case study investigates the role of behavioral assessment techniques as a complement to task-based performance measurement. The collected data resulted in a massive data set including system logs, observer reports, and surveys. Six different methods were compared for feasibility in assessing the teams' performance, including automated availability check, exploratory sequential data analysis, and network intrusion detection system attack analysis. In addition, observer reports and surveys were used to collect aspects relating to team structures and processes, aiming to discover whether these aspects can explain differences in effectiveness. The cross-disciplinary approach and multiple metrics create possibilities to study not only the performance-related outcome of the exercise, but also why this result is obtained. The main conclusions found are (1) a combination of technical performance measurements and behavioral assessment techniques are needed to assess team effectiveness, and (2) cyber situation awareness is required not only for the defending teams, but also for the observers and the game control.
机译:2010年,来自北欧各国政府和组织的IT安全专家齐聚一堂,进行了北约牵头的一系列网络防御演习中的第一项,以尝试性地训练网络防御。为了获得有关如何在网络防御演习中评估团队效率的知识,本案例研究调查了行为评估技术在基于任务的绩效评估中的作用。收集的数据形成了一个庞大的数据集,包括系统日志,观察者报告和调查。比较了六个不同方法在评估团队绩效方面的可行性,包括自动可用性检查,探索性顺序数据分析和网络入侵检测系统攻击分析。此外,还使用观察员报告和调查来收集与团队结构和流程有关的方面,旨在发现这些方面是否可以解释有效性差异。跨学科的方法和多种指标创造了不仅可以研究与锻炼相关的结果,而且可以研究为什么获得此结果的可能性。得出的主要结论是:(1)需要结合技术绩效测量和行为评估技术来评估团队效能,(2)不仅需要防守团队,还需要观察员和比赛控制者掌握网络情况。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号