Resources
Location:

Building a Cybersecurity Operations Center

Title:Building a Cybersecurity Operations Center (ID: SEC09_170524)
Author(s):Kathleen R. Kimball (The Pennsylvania State University), Randy Marchany (Virginia Tech) and Gregory W. Hedrick, II (Purdue University)
Topics:Incident Handling and Response, SEC09, Security Management, Security Metrics
Origin:Security Professionals Conference (04/22/2009)
Type:Presentations and Seminars
Abstract:

Three IT security offices (Virginia Tech, Penn State, and Purdue) are building a cybersecurity operations center (CSOC) that will be the focal point for each institutions campus-wide cybersecurity infrastructure. The CSOC aggregates data from IDS, IPS, security reviews, vulnerability scanners, and other tools stored in various databases. The CSOC allows incident response team members to pull up a host's "security history" in a timely manner. This information can be used in incident response, security metrics, and security reviews. The CSOC is not a physical security center with surveillance cameras; it deals only with cybersecurity issues. Each institution will provide an overview of its CSOC initiatives.

View this resource:

 
© Copyright 1999-2009 EDUCAUSE