International Journal On Cyber Situational Awareness (IJCSA)
ISSN: (Print) 2057-2182 ISSN: (Online) 2057-2182
Published Semi-annually. Est. 2014
Dr Cyril Onwubiko, Chair – Cyber Security & Intelligence, E-Security Group, Research Series, London, UK; IEEE UK & Ireland Section Secretary
Professor Frank Wang, Head of School / Professor of Future Computing, Chair IEEE Computer Society, UK&RI, School of Computing, University of Kent, Canterbury, UK
Dr Thomas Owens, Senior Lecturer & Director of Quality, Department of Electronic and Computer Engineering, Brunel University, London, UK
Towards Network Science Enhanced Cyber Situational Awareness
Geoffrey B. Dobson, Timothy J. Shimeall, and Kathleen M. Carley
A dynamic network analysis is conducted on network flow data to demonstrate an improvement in cyber situational awareness. The analysis begins by collecting network-level data (density, network centralization total degree, and fragmentation) on samples of network flow data using the SiLK collection and analysis suite. The next phase categorized the data into four types: autonomic inflow, autonomic outflow, human inflow, and human outflow. Using the CASOS tool ORA, a series of dynamic network analyses were performed on each hour of the data. The results showed variations between the autonomic and human traffic that can be used by firms to gain more detailed understanding on how traffic behaves on their computer networks. The more granular profiles of operations permit separate understanding of automated and manual processes. The network science techniques provide a basis for providing these improvements in a systematic and repeatable manner.
Keyword: dynamic network analysis, cyber security, network traffic analysis, cyber situational awareness
Volume 2. No. 1
Date: Nov. 2017
Reference to this paper should be made as follows: Dobson, G. B., Shimeall, T. J., and Carley, K. M. (2017). Towards Network Science Enhanced Cyber Situational Awareness. International Journal on Cyber Situational Awareness, Vol. 1, No. 1, pp11-30.