BD Spokes: PLANNING: NORTHEAST: Cross-organization Big Data Cyber Attack Awareness
BD Spokes: PLANNING: NORTHEAST: Cross-organization Big Data Cyber Attack Awareness
批准号:
1636899
负责人:
John Yen
金额:
$9.96万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2016
资助国家:
美国
项目状态:
已结题
起止时间:
2016-09-01 至 2017-08-31
中文摘要
网络攻击,特别是涉及高级持续威胁(APT)的攻击,目标是包括高等教育机构在内的所有类型的组织。应对大规模网络攻击的一个关键机会是启动建立广泛的伙伴关系,以实现跨组织、受保护的相关网络安全数据共享的最终目标,以增强运营、劳动力发展和研究。共享网络安全数据的影响是巨大的。由于企业计算中单一文化的风险,一加一大于二的效应已经在网络安全界得到了广泛的认可。他们可以通过跨组织共享相关网络安全数据来加强协作网络安全行动。它们还使研究人员能够开发可扩展的数据分析和工具,以便更有效地预防、缓解和响应跨组织的网络攻击。最后,它们可以显著提高不同网络安全工作人员(包括开发人员、分析师和管理人员)的教育和学习。共享网络安全数据的一个关键挑战是机构对共享此类数据涉及的潜在风险的担忧。由于问题的复杂性,应对这一挑战的解决方案只能通过包括所有利益相关者的会议和论坛来提出,以便他们对共享网络安全数据的潜在担忧能够得到共同解决。此外,网络安全、大数据分析、网络基础设施、隐私、数据共享政策和合规方面的思想领袖都可以以独特的方式为此类讨论做出贡献。因此,该项目将与东北大数据中心、宾夕法尼亚州立大学、罗格斯大学、达特茅斯学院、行业合作伙伴(如IBM)和政府合作伙伴(如陆军研究实验室)合作,组织一系列关于跨组织共享网络安全数据的规划活动(包括研讨会)。研讨会将生成一份关于东北地区三个学术机构(即宾夕法尼亚州立大学、罗格斯大学和达特茅斯学院)实现和利用跨组织共享海量网络安全数据的最佳实践(包括协议草案和相关基础设施)、劳动力发展规划和财务可持续性途径的报告。该项目将提高我们对与保护共享网络安全数据的障碍相关的复杂问题的理解。以整体的方式更好地了解这些问题及其关系提供了一个重要的基础,可以在此基础上为共享相关网络安全数据的协议、框架和网络基础设施建立可能的最佳做法。此外,研讨会还将为解决跨组织共享网络安全数据的复杂问题确定各种选择并揭示它们之间的权衡。这些隐性知识一旦通过研讨会报告清楚地表达出来,很可能会增强关于网络安全分析、管理和工具开发的正式知识,特别是对于实现跨组织的大数据网络攻击意识。该项目还将产生三个广泛的影响:(I)它将通过启用多组织协作防御来从根本上改变网络防御操作;(Ii)它将通过改进培训工具、学习模块和利用真实网络安全数据的课程来增强不同网络安全工作人员的全球竞争力;(Iii)它将通过对大量跨组织网络安全数据的创新分析来促进关于跨组织网络态势感知的研究。该奖项由CEISE计算机和网络系统(CNS)安全与可信计算(SATC)计划共同资助。
英文摘要
Cyber attacks, especially those involving Advanced Persistent Threats (APTs), have targeted organizations of all types, including higher education institutions. A key opportunity to counter large-scale cyber attacks is to initiate the establishment of a broad partnership regarding the ultimate goal of cross-organization protected sharing of relevant cyber security data for enhanced operation, workforce development, and research. The impacts of sharing cyber security data are immense. Due to the risks of monoculture in enterprise computing, the "one plus one is greater than two" effects have already been widely recognized in the cyber security community. They can enhance collaborative cyber security operations through cross-organization sharing of relevant cybersecurity data. They can also empower researchers to develop scalable data analytics and tools for more effective prevention, mitigation, and response to cross-organization cyber attacks. Finally, they can significantly enhance the education and learning of diverse cyber security workforce (including developers, analysts, and managers). A key challenge for sharing cyber security data is an institution's concern about potential risks involved in sharing such data. Due to the complexity of the problems, solutions to tackle this challenge can only emerge from meetings and forums that include all stake holders such that their potential concerns about sharing cyber security data can be addressed together. Furthermore, thought leaders in cyber security, big data analytics, cyber infrastructure, privacy, data sharing policy and compliance can all contribute to such discussions in a unique way. Therefore, this project will organize a series of planning activities (including a workshop) regarding Cross-organization Sharing of Cyber Security Data, in collaboration with the Northeast Big Data Hub, Penn State, Rutgers University, Dartmouth College, industry partners (e.g., IBM), and government partners (e.g., Army Research Lab). The workshop will generate a report regarding best practices (including draft agreements and related infrastructures), planning for workforce development, and path to financial sustainability for three academic institutions in Northeast region (i.e., the Pennsylvania State University, Rutgers University, and Dartmouth College) to enable and leverage cross-organization sharing of massive cyber security data.This project will improve our understanding about the complex issues related to barriers for protected sharing of cyber security data. An improved understanding regarding these issues and their relationships in a holistic way provides a critical base on which possible best practices for agreements, frameworks, and cyber infrastructures for sharing relevant cyber security data can be established. In addition, the workshop will also identify options and uncover their tradeoffs for addressing the complex issues for cross-organization sharing of cyber security data. It is likely that these tacit knowledge, once articulated clearly through the workshop report, will enhance the formal knowledge regarding cyber security analysis, management, and tool development, especially for achieving cross-organization big data cyber attack awareness. This project will also generate three broad impacts: (i) it will fundamentally transform cyber defense operations by enabling multi-organization collaborative defense; (ii) it will enhance the global competitiveness of diverse cyber security workforce through enhancements to training tools, learning modules, and courses that leverage real-world cyber security data; (iii) it will foster research regarding cross-organization cyber situation awareness through innovative analytics of massive cross-organization cyber security data.This award is co-funded by the CISE Division of Computer and Network Systems (CNS) Secure and Trustworthy Computing (SaTC) Program.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
CCRI: Planning-C: A Community Research Infrastructure for Integrated AI-Enabled Malware and Network Data Analytics
-
批准号:2213794
-
项目类别:Standard Grant
-
资助金额:$9.94万
-
财政年份:2022
-
负责人:John Yen
-
依托单位:
RAPID: Text Message-Based Infrastructure for Emergency Response
-
批准号:1026763
-
项目类别:Standard Grant
-
资助金额:$7.5万
-
财政年份:2010
-
负责人:John Yen
-
依托单位:
U.S.-Mexico Collaborative Research: Intelligent Control in Manufacturing Via a Fuzzy Logic Based Approach
-
批准号:9303198
-
项目类别:Standard Grant
-
资助金额:$1.42万
-
财政年份:1993
-
负责人:John Yen
-
依托单位:
NYI: Using Fuzzy Logic to Deal with Qualitive Requirements and Uncertaintly in the Environment
-
批准号:9257293
-
项目类别:Continuing Grant
-
资助金额:$31.6万
-
财政年份:1992
-
负责人:John Yen
-
依托单位:
海外基金