A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection

Security Operations Centers (SOCs) play a vital role in protecting organizations from cyber threats. Supported by skilled Security Analysts, they are the first line of defense, monitoring and responding to incidents. The Security Information and Event Management (SIEM) system is a critical tool for...

Full description

Bibliographic Details
Published in:8th International Conference on Recent Advances and Innovations in Engineering: Empowering Computing, Analytics, and Engineering Through Digital Innovation, ICRAIE 2023
Main Author: Hata M.B.M.; Darus M.Y.B.; Shafiee M.Z.A.B.; Petrus E.; Jamian Y.A.
Format: Conference paper
Language:English
Published: Institute of Electrical and Electronics Engineers Inc. 2023
Online Access:https://www.scopus.com/inward/record.uri?eid=2-s2.0-85189941881&doi=10.1109%2fICRAIE59459.2023.10468438&partnerID=40&md5=76f27d07ce11a4637d4e45e27615f010
id 2-s2.0-85189941881
spelling 2-s2.0-85189941881
Hata M.B.M.; Darus M.Y.B.; Shafiee M.Z.A.B.; Petrus E.; Jamian Y.A.
A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
2023
8th International Conference on Recent Advances and Innovations in Engineering: Empowering Computing, Analytics, and Engineering Through Digital Innovation, ICRAIE 2023


10.1109/ICRAIE59459.2023.10468438
https://www.scopus.com/inward/record.uri?eid=2-s2.0-85189941881&doi=10.1109%2fICRAIE59459.2023.10468438&partnerID=40&md5=76f27d07ce11a4637d4e45e27615f010
Security Operations Centers (SOCs) play a vital role in protecting organizations from cyber threats. Supported by skilled Security Analysts, they are the first line of defense, monitoring and responding to incidents. The Security Information and Event Management (SIEM) system is a critical tool for managing log data efficiently. This research focuses on optimizing log data aggregation within a SOC's SIEM framework. By exploring various log aggregation techniques, we aim to enhance the performance of data collectors, leading to quicker response times and improved security. This research contributes to a more robust defense against the ever-changing landscape of cyber threats. It empowers organizations to face evolving challenges with confidence and resilience. © 2023 IEEE.
Institute of Electrical and Electronics Engineers Inc.

English
Conference paper

author Hata M.B.M.; Darus M.Y.B.; Shafiee M.Z.A.B.; Petrus E.; Jamian Y.A.
spellingShingle Hata M.B.M.; Darus M.Y.B.; Shafiee M.Z.A.B.; Petrus E.; Jamian Y.A.
A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
author_facet Hata M.B.M.; Darus M.Y.B.; Shafiee M.Z.A.B.; Petrus E.; Jamian Y.A.
author_sort Hata M.B.M.; Darus M.Y.B.; Shafiee M.Z.A.B.; Petrus E.; Jamian Y.A.
title A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
title_short A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
title_full A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
title_fullStr A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
title_full_unstemmed A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
title_sort A Log Aggregation Design Criteria for Robust SIEM (Security Information and Event Management) in Enhancing Threat Detection
publishDate 2023
container_title 8th International Conference on Recent Advances and Innovations in Engineering: Empowering Computing, Analytics, and Engineering Through Digital Innovation, ICRAIE 2023
container_volume
container_issue
doi_str_mv 10.1109/ICRAIE59459.2023.10468438
url https://www.scopus.com/inward/record.uri?eid=2-s2.0-85189941881&doi=10.1109%2fICRAIE59459.2023.10468438&partnerID=40&md5=76f27d07ce11a4637d4e45e27615f010
description Security Operations Centers (SOCs) play a vital role in protecting organizations from cyber threats. Supported by skilled Security Analysts, they are the first line of defense, monitoring and responding to incidents. The Security Information and Event Management (SIEM) system is a critical tool for managing log data efficiently. This research focuses on optimizing log data aggregation within a SOC's SIEM framework. By exploring various log aggregation techniques, we aim to enhance the performance of data collectors, leading to quicker response times and improved security. This research contributes to a more robust defense against the ever-changing landscape of cyber threats. It empowers organizations to face evolving challenges with confidence and resilience. © 2023 IEEE.
publisher Institute of Electrical and Electronics Engineers Inc.
issn
language English
format Conference paper
accesstype
record_format scopus
collection Scopus
_version_ 1809677779729383424