Sabaragamuwa University of Sri Lanka

Development of Cyber Threat Intelligence System in a SOC Environment for Real Time Environment

Show simple item record

dc.contributor.author Varatharaj, Aperame
dc.contributor.author Rupasinghe, Prabath Lakmal
dc.contributor.author Liyanapathirana, Chethana
dc.date.accessioned 2021-07-02T08:19:34Z
dc.date.available 2021-07-02T08:19:34Z
dc.date.issued 2021-02-24
dc.identifier.issn 2773-7136
dc.identifier.uri http://repo.lib.sab.ac.lk:8080/xmlui/handle/123456789/1741
dc.description.abstract Now a days, Information Communication Technology (ICT) plays an important role in the world. In IT, Cyber Security holds a vast place. Cyber Threat Intelligence (CTI) leads the significant place within Cyber Security, as many Cyber Threats need to be faced every day by a particular organization. Security Operation Center (SOC) helps to monitor and analyze an organization’s security position in Real Time. This paper proposes about the Cyber Threat Intelligence framework in a SOC Environment in Real Time. The proposed framework contains of three layers, which are built above Security Onion. The Layer 1 comprises of input data from online and offline sources. In Layer 2, implemented two components namely Filter data and Cut down data, which receive the data from Layer 1. Finally, in Layer 3 delivers a detailed report. As the input for the Layer 1, Financial Datasets is used. These Financial Datasets, which helps in order to detect the Financial Frauds. Machine Learning is used to train the model. By implementing CTI System in an organization, it helps to gain predictive output regarding the upcoming threats. Also, it helps to ensure the reputation of an organization by establishing trust between the users. Helps to increase the number of customers to an organization. The above are the advantages gained by a particular organization by having a CTI System. en_US
dc.language.iso en en_US
dc.publisher Department of Computing and Information Systems, Faculty of Applied Sciences, Sabaragamuwa University of Sri Lanka, P.O. Box 02, Belihuloya, 70140, Sri Lanka. en_US
dc.subject Information Communication Technology en_US
dc.subject Cyber Security en_US
dc.subject Cyber Threat Intelligence en_US
dc.subject Security Operation Center en_US
dc.subject Security Onion en_US
dc.subject Elastic search-Logstash-Kibana en_US
dc.subject Machine Learning en_US
dc.title Development of Cyber Threat Intelligence System in a SOC Environment for Real Time Environment en_US
dc.type Article en_US


Files in this item

This item appears in the following Collection(s)

  • ICARC - 2021 [34]
    “Towards a Digitally Empowered Society”

Show simple item record

Search DSpace


Advanced Search

Browse

My Account