Towards Network Science Enhanced Cyber Situational Awareness

International Journal On Cyber Situational Awareness (IJCSA)

ISSN: (Print) 2057-2182 ISSN: (Online) 2057-2182

DOI: 10.22619/IJCSA

Published Semi-annually. Est. 2014

Editor-in-Chief:

Dr Cyril Onwubiko, Chair – Cyber Security & Intelligence, E-Security Group, Research Series, London, UK; IEEE UK & Ireland Section Secretary

Associate Editors:

Professor Frank Wang, Head of School / Professor of Future Computing, Chair IEEE Computer Society, UK&RI, School of Computing, University of Kent, Canterbury, UK

Dr Thomas Owens, Senior Lecturer & Director of Quality, Department of Electronic and Computer Engineering, Brunel University, London, UK

Towards Network Science Enhanced Cyber Situational Awareness

Geoffrey B. Dobson, Timothy J. Shimeall, and Kathleen M. Carley

Abstract:

A dynamic network analysis is conducted on network flow data to demonstrate an improvement in cyber situational awareness. The analysis begins by collecting network-level data (density, network centralization total degree, and fragmentation) on samples of network flow data using the SiLK collection and analysis suite. The next phase categorized the data into four types: autonomic inflow, autonomic outflow, human inflow, and human outflow.  Using the CASOS tool ORA, a series of dynamic network analyses were performed on each hour of the data. The results showed variations between the autonomic and human traffic that can be used by firms to gain more detailed understanding on how traffic behaves on their computer networks. The more granular profiles of operations permit separate understanding of automated and manual processes. The network science techniques provide a basis for providing these improvements in a systematic and repeatable manner.

Keyword: dynamic network analysis, cyber security, network traffic analysis, cyber situational awareness

ISSN: 2057-2182

Volume 2. No. 1

DOI: 10.22619/IJCSA.2017.100112

Date: Nov. 2017

Reference to this paper should be made as follows: Dobson, G. B., Shimeall, T. J., and Carley, K. M. (2017). Towards Network Science Enhanced Cyber Situational Awareness. International Journal on Cyber Situational Awareness, Vol. 1, No. 1, pp11-30.

PDF Download