A Reference Model for Cyber Threat Intelligence (CTI) Systems

被引:18
作者
Sakellariou, Georgios [1 ]
Fouliras, Panagiotis [1 ]
Mavridis, Ioannis [1 ]
Sarigiannidis, Panagiotis [2 ]
机构
[1] Univ Macedonia, Dept Appl Informat, Thessaloniki 54636, Greece
[2] Univ Western Macedonia, Dept Elect & Comp Engn, Kozani 50100, Greece
基金
欧盟地平线“2020”;
关键词
cyber threat intelligence; information security; reference model; system architecture; ANALYTICS;
D O I
10.3390/electronics11091401
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber Threat Intelligence (CTI) is a new but promising field of information security, with many organizations investing in the development of proper tools and services and the integration of CTI related information. However, as a new field, there is a lack of a conceptual framework with corresponding definitions. This paper discusses CTI complexity factors, proposes a set of definitions of the CTI key concepts and an eight-layer CTI Reference Model as a base for CTI systems design. In addition, the proposed reference model is validated by applying it to three case studies, producing the respective CTI Reference Architectures.
引用
收藏
页数:23
相关论文
共 83 条
[1]  
Accenture, 2020, 3 ANN STAT CYB RES I
[2]  
Ahlemann F., 2007, Reference Modeling for Business Systems Analysis, P77, DOI [10.4018/978-1-59904-054-7.ch004, DOI 10.4018/978-1-59904-054-7.CH004]
[3]  
Ahrend J.M., 2016, PROC INT C CYBER SIT, P1
[4]   Cyber-Attack Modeling Analysis Techniques: An Overview [J].
AL-Mohannadi, Hamad ;
Mirza, Qublai ;
Namanya, Anitta ;
Awan, Irfan ;
Cullen, Andrea ;
Disso, Jules .
2016 IEEE 4TH INTERNATIONAL CONFERENCE ON FUTURE INTERNET OF THINGS AND CLOUD WORKSHOPS (FICLOUDW), 2016, :69-76
[5]  
[Anonymous], LOCKHEED MARTIN CYBE
[6]  
[Anonymous], CHECKPOINT SECURITY
[7]  
[Anonymous], 2015, J Big Data, DOI DOI 10.1186/S40537-015-0013-4
[8]  
[Anonymous], VIRUSTOTAL YARATHE P
[9]  
[Anonymous], VERIS FRAM
[10]  
Ardagna C., 2021, ENISA Threat Landscape 2021