Tackling Verification and Validation Techniques to Evaluate Cyber Situational Awareness Capabilities

被引:0
作者
Llopis Sanchez, Salvador [1 ]
Sandoval Rodriguez-Bermejo, David [2 ,3 ,4 ]
Daton Medenou, Roumen [2 ,5 ]
Pasqual de Riquelme, Ramis [2 ]
Torelli, Francesco [6 ]
Maestre Vidal, Jorge [2 ]
机构
[1] Univ Politecn Valencia, Commun Dept, Valencia 46022, Spain
[2] Indra, Digital Labs, Alcobendas 28108, Spain
[3] Univ Carlos III Madrid UC3M, Dept Comp Sci, Madrid 28005, Spain
[4] Tarlogic, Madrid 28050, Spain
[5] Univ Int La Rioja UNIR, Comp Sci Dept, Logrono 26006, Spain
[6] Leonardo Finmeccan, I-00195 Rome, Italy
关键词
cyber defence; cyber situational awareness; decision making; verification and validation; SYSTEMS; SECURITY; VULNERABILITIES; SCALABILITY; SAFETY;
D O I
10.3390/math10152617
中图分类号
O1 [数学];
学科分类号
0701 ; 070101 ;
摘要
Since cyberspace was identified as a domain of operations, defence practitioners started a race with academy, researchers, and industry and military organizations working together towards defining related lines of capability development (e.g., DOTMLPFI) and exploring the needs and opportunities they entail. An essential cornerstone of adapting to the convergence of the cyber domain with conventional theaters of operation is the need for producing tools for easing to acquire cyber situational awareness (CSA), from which human operators shall be able to perceive, reason and project situations and events observed in cyberspace that may vertically/horizontally propagate from technological to tactical, operational and strategic planes. Benefiting from the higher maturity level of civilian capabilities for cybersecurity, the military sector has embraced the challenge of creating related beyond state-of-the-art CSA enablers that comprise the existing technological background while adopting concepts such as operations, missions or courses of action (CoAs), properly aligning them with military doctrine. Beyond ongoing development efforts, there is a wide methodological gap in the lack of suitable CSA verification and validation (V&V) frameworks, which are expected to analyze if related capabilities meet the requirements to operate in the military context; at the same time supporting the thorough development life-cycle of brand new cyber defence technologies. With the motivation of closing the identified gap, this research introduces a novel V&V framework able to guide the evaluation of CSA-related tools, which makes converge purely military aspects with dual-use state-of-the-art V&V approaches. Three core CSA evaluation concepts are discussed in-depth: software, operational and application tests. They range from the daily application of new capabilities to their ability to enable the acquisition of a joint operational picture understandable by human decision makers.
引用
收藏
页数:30
相关论文
共 50 条
  • [31] A Decision Support Model for Situational Awareness in National Cyber Operations Centers
    Graf, Roman
    Skopik, Florian
    Whitebloom, Kenny
    2016 INTERNATIONAL CONFERENCE ON CYBER SITUATIONAL AWARENESS, DATA ANALYTICS AND ASSESSMENT (CYBERSA), 2016,
  • [32] A survey of methods supporting cyber situational awareness in the context of smart cities
    Nataliia Neshenko
    Christelle Nader
    Elias Bou-Harb
    Borko Furht
    Journal of Big Data, 7
  • [33] CRUSOE: A toolset for cyber situational awareness and decision support in incident handling
    Husak, Martin
    Sadlek, Lukas
    Spacek, Stanislav
    Lastovicka, Martin
    Javornik, Michal
    Komarkova, Jana
    COMPUTERS & SECURITY, 2022, 115
  • [34] Enhancing Cyber Situational Awareness: A New Perspective of Password Auditing Tools
    Stavrou, Eliana
    2018 INTERNATIONAL CONFERENCE ON CYBER SITUATIONAL AWARENESS, DATA ANALYTICS AND ASSESSMENT (CYBER SA), 2018,
  • [35] Virtual reality for improving cyber situational awareness in security operations centers
    Munsinger, Brita
    Beebe, Nicole
    Richardson, Turquoise
    COMPUTERS & SECURITY, 2023, 132
  • [36] Correlating Cyber Incident Information to Establish Situational Awareness in Critical Infrastructures
    Settanni, Giuseppe
    Shovgenya, Yegor
    Skopik, Florian
    Graf, Roman
    Wurzenberger, Markus
    Fiedler, Roman
    2016 14TH ANNUAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2016,
  • [37] Predicting Cyber-Attack using Cyber Situational Awareness: The Case of Independent Power Producers (IPPs)
    Matey, Akwetey Henry
    Danquah, Paul
    Koi-Akrofi, Godfred Yaw
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (01) : 700 - 709
  • [38] Neurophysiological and emotional influences on team communication and metacognitive cyber situational awareness during a cyber engineering exercise
    Ask, Torvald F.
    Knox, Benjamin J.
    Lugo, Ricardo G.
    Helgetun, Ivar
    Suetterlin, Stefan
    FRONTIERS IN HUMAN NEUROSCIENCE, 2023, 16
  • [39] Cyber situational awareness: from geographical alerts to high-level management
    Angelini, Marco
    Santucci, Giuseppe
    JOURNAL OF VISUALIZATION, 2017, 20 (03) : 453 - 459
  • [40] Protecting digital assets using an ontology based cyber situational awareness system
    Almoabady, Tariq Ammar
    Alblawi, Yasser Mohammad
    Albalawi, Ahmad Emad
    Aborokbah, Majed M.
    Manimurugan, S.
    Aljuhani, Ahmed
    Aldawood, Hussain
    Karthikeyan, P.
    FRONTIERS IN ARTIFICIAL INTELLIGENCE, 2025, 7