Tackling Verification and Validation Techniques to Evaluate Cyber Situational Awareness Capabilities

被引:0
作者
Llopis Sanchez, Salvador [1 ]
Sandoval Rodriguez-Bermejo, David [2 ,3 ,4 ]
Daton Medenou, Roumen [2 ,5 ]
Pasqual de Riquelme, Ramis [2 ]
Torelli, Francesco [6 ]
Maestre Vidal, Jorge [2 ]
机构
[1] Univ Politecn Valencia, Commun Dept, Valencia 46022, Spain
[2] Indra, Digital Labs, Alcobendas 28108, Spain
[3] Univ Carlos III Madrid UC3M, Dept Comp Sci, Madrid 28005, Spain
[4] Tarlogic, Madrid 28050, Spain
[5] Univ Int La Rioja UNIR, Comp Sci Dept, Logrono 26006, Spain
[6] Leonardo Finmeccan, I-00195 Rome, Italy
关键词
cyber defence; cyber situational awareness; decision making; verification and validation; SYSTEMS; SECURITY; VULNERABILITIES; SCALABILITY; SAFETY;
D O I
10.3390/math10152617
中图分类号
O1 [数学];
学科分类号
0701 ; 070101 ;
摘要
Since cyberspace was identified as a domain of operations, defence practitioners started a race with academy, researchers, and industry and military organizations working together towards defining related lines of capability development (e.g., DOTMLPFI) and exploring the needs and opportunities they entail. An essential cornerstone of adapting to the convergence of the cyber domain with conventional theaters of operation is the need for producing tools for easing to acquire cyber situational awareness (CSA), from which human operators shall be able to perceive, reason and project situations and events observed in cyberspace that may vertically/horizontally propagate from technological to tactical, operational and strategic planes. Benefiting from the higher maturity level of civilian capabilities for cybersecurity, the military sector has embraced the challenge of creating related beyond state-of-the-art CSA enablers that comprise the existing technological background while adopting concepts such as operations, missions or courses of action (CoAs), properly aligning them with military doctrine. Beyond ongoing development efforts, there is a wide methodological gap in the lack of suitable CSA verification and validation (V&V) frameworks, which are expected to analyze if related capabilities meet the requirements to operate in the military context; at the same time supporting the thorough development life-cycle of brand new cyber defence technologies. With the motivation of closing the identified gap, this research introduces a novel V&V framework able to guide the evaluation of CSA-related tools, which makes converge purely military aspects with dual-use state-of-the-art V&V approaches. Three core CSA evaluation concepts are discussed in-depth: software, operational and application tests. They range from the daily application of new capabilities to their ability to enable the acquisition of a joint operational picture understandable by human decision makers.
引用
收藏
页数:30
相关论文
共 50 条
  • [21] Enhancing Cyber Situational Awareness for Cyber-Physical Systems through Digital Twins
    Eckhart, Matthias
    Ekelhart, Andreas
    Weippl, Edgar
    2019 24TH IEEE INTERNATIONAL CONFERENCE ON EMERGING TECHNOLOGIES AND FACTORY AUTOMATION (ETFA), 2019, : 1222 - 1225
  • [22] Cyber Attacks Analysis Using Decision Tree Technique for Improving Cyber Situational Awareness
    Pournouri, Sina
    Akhgar, Babak
    Bayerl, Petra Saskia
    GLOBAL SECURITY, SAFETY AND SUSTAINABILITY: THE SECURITY CHALLENGES OF THE CONNECTED WORLD, ICGS3 2017, 2016, 630 : 155 - 172
  • [23] Cyber Situational Awareness Enhancement with Regular Expressions and an Evaluation Methodology
    Park, Hyun Kyoo
    Kim, Min Sik
    park, Moosung
    Lee, Kyungho
    MILCOM 2017 - 2017 IEEE MILITARY COMMUNICATIONS CONFERENCE (MILCOM), 2017, : 406 - 411
  • [24] Cyber attacks real time detection: towards a Cyber Situational Awareness for naval systems
    Jacq, Olivier
    Brosset, David
    Kermarrec, Yvon
    Simonin, Jacques
    2019 INTERNATIONAL CONFERENCE ON CYBER SITUATIONAL AWARENESS, DATA ANALYTICS AND ASSESSMENT (CYBER SA), 2019,
  • [25] Integrated Situational Awareness for Cyber Attack Detection, Analysis, and Mitigation
    Cheng, Yi
    Sagduyu, Yalin
    Deng, Julia
    Li, Jason
    Liu, Peng
    SENSORS AND SYSTEMS FOR SPACE APPLICATIONS V, 2012, 8385
  • [26] A Conceptual Nationwide Cyber Situational Awareness Framework for Critical Infrastructures
    Bahsi, Hayretdin
    Maennel, Olaf Manuel
    SECURE IT SYSTEMS, NORDSEC 2015, 2015, 9417 : 3 - 10
  • [27] Operational cyber incident coordination revisited: providing cyber situational awareness across organizations and countries
    Leitner, Maria
    Skopik, Florian
    Pahi, Timea
    INFORMATION SECURITY JOURNAL, 2024, 33 (05): : 486 - 507
  • [28] Cauldron Mission-Centric Cyber Situational Awareness with Defense in Depth
    Jajodia, Sushil
    Noel, Steven
    Kalapa, Pramod
    Albanese, Massimiliano
    Williams, John
    2011 - MILCOM 2011 MILITARY COMMUNICATIONS CONFERENCE, 2011, : 1339 - 1344
  • [29] Leverage Intrusion Detection System Framework For Cyber Situational Awareness System
    Masduki, Bisyron Wahyudi
    Ramli, Kalamullah
    Salman, Muhammad
    PROCEEDINGS OF 2017 INTERNATIONAL CONFERENCE ON SMART CITIES, AUTOMATION & INTELLIGENT COMPUTING SYSTEMS (ICON-SONICS 2017), 2017, : 64 - 69
  • [30] Mission-Centric Risk Assessment to Improve Cyber Situational Awareness
    Silva, F. R. L.
    Jacob, P.
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,