Cybersecurity Evaluation with PowerShell
Cybersecurity Evaluation with PowerShell
复制标题
使用 PowerShell 进行网络安全评估
DOI:
10.1109/isdfs49300.2020.9116258
复制
发表时间:
2020
期刊:
影响因子:
--
通讯作者:
C. Varol
中科院分区:
文献类型:
--
作者:
Steven Zavala;N. Shashidhar;C. Varol
An organization’s cybersecurity posture is trending as one of the most highly regarded areas of focus. As more companies fall victim to breaches and exploits, we find more cases where corporations are falling victim to this and we find they attribute to improper defined security practices, failure to have a policy to address breaches or even comply with their existing strategies. It comes as no surprise that the effects of breaches and the eventual compromise of data continues to impact every level from large corporations down to the individuals. Therefore, it is imperative to provide individuals with a comparative method to retrieve a common baseline of their cybersecurity posture versus an acceptable established standard. Existing audit measures are quite cumbersome and introduce room for errors. Using PowerShell provides a method to automate parsing information into a company’s existing policy and expose any cybersecurity vulnerabilities. PowerShell audit process used here will provide an organization with the method to self-check without having to incorporate the use of software from third-party tools. Because of PowerShell’s flexibility of parsing information using from the OS environment. CSET as designed by the collaborative efforts from Department Homeland Security (DHS) and the National Cybersecurity and Communications Integration Center (NCCIC) provides a very thorough method of producing an evaluation of the organization’s Cybersecurity posture. Their tool achieves this through various means which may require an auditor participant to produce the necessary information by manually extracting values, such as whether software firewall rules are enabled or not. The research done here will focus on executing query commands and automating much of the manual process of gathering data to eliminate the human component. We achieve this by combining PowerShell functions which can give the auditor another method to tailor their audit experience to what is relevant in their area of concern.