[PDF][PDF] Toward integrated tactical operations for Red/Blue cyber defense teams

JM Haney, CL Paul - Workshop on Security Information Workers at …, 2018 - researchgate.net
Workshop on Security Information Workers at Symposium on Usable …, 2018researchgate.net
Red and Blue cyberdefense teams provide valuable cybersecurity assessment services to
help prevent and defend against malicious intruders. Through interviews, we investigated
the methods, tools, and challenges of two specific US Government Department of Defense
Red and Blue teams and how they work together during integrated operations. We found
examples of successful integration, as well as opportunities for enhanced, shared situation
awareness. Based on these findings, we discuss design implications for tools that can …
Abstract
Red and Blue cyberdefense teams provide valuable cybersecurity assessment services to help prevent and defend against malicious intruders. Through interviews, we investigated the methods, tools, and challenges of two specific US Government Department of Defense Red and Blue teams and how they work together during integrated operations. We found examples of successful integration, as well as opportunities for enhanced, shared situation awareness. Based on these findings, we discuss design implications for tools that can facilitate situation awareness among multiple cyberdefense teams by supporting data fusion, change detection, network mapping, and access tracking.
researchgate.net
以上显示的是最相近的搜索结果。 查看全部搜索结果