Building an Incident Management Body of Knowledge

被引:6
作者
Mundie, David A. [1 ]
Ruefle, Robin [1 ]
机构
[1] CERT Program, Inst Software Engn, Pittsburgh, PA USA
来源
2012 SEVENTH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES) | 2012年
关键词
body of knowledge; incident response; incident management; taxonomy; static ontology; process model; competency framework;
D O I
10.1109/ARES.2012.83
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The CERT Incident Management Body of Knowledge (CIMBOK) was built using a systematic process that starts with a controlled vocabulary and evolves through taxonomies, static ontologies, dynamic ontologies, intentional ontologies, and metamodels. The CIMBOK builds on 10 previous standards for incident management. This paper describes the components of the CIMBOK and how they were constructed.
引用
收藏
页码:507 / 513
页数:7
相关论文
共 33 条
  • [1] [Abran A. IEEE Computer Society IEEE Computer Society], 2004, GUIDE SOFTWARE ENG B
  • [2] Alberts Chris, 2007, CMUSEI2004TR015
  • [3] [Anonymous], 2009, ITIL V3 FDN HDB
  • [4] [Anonymous], COMP SEC INC H UNPUB
  • [5] [Anonymous], 2006, BOD KNOWL MED PRACT
  • [6] [Anonymous], 2008, GUID PROJ MAN BOD KN
  • [7] [Anonymous], 2005, 270022005 ISOIEC
  • [8] [Assistant Secretary of Defense for Networks and Information Integration Department of Defense Chief Information Officer], 2005, 857001M DOD ASS SECR
  • [9] Atkins B. T. S., 2008, OXFORD GUIDE PRACTIC
  • [10] Bandor M., 2007, PROCESS PROCEDURE DE