Banca de DEFESA: Rogerio Machado da Silva

Uma banca de DEFESA de MESTRADO foi cadastrada pelo programa.
STUDENT : Rogerio Machado da Silva
DATE: 20/06/2023
TIME: 09:00
LOCAL: https://teams.microsoft.com/l/meetup-join/19%3a0a9998084fcc459f92b72fb6608767f7%40thread.tacv2/16869
TITLE:

Proposal of a Framework for Quality Improvement in the Production of Cyber Threat Intelligence


KEY WORDS:

Threat Intelligence, Intelligence Cycle, Methodological Analysis


PAGES: 44
BIG AREA: Engenharias
AREA: Engenharia Elétrica
SUMMARY:

In cyberspace, boundaries are constantly being crossed in the name of progress and convenience, invariably paving the way for new vulnerabilities and potential attacks. Traditional security approaches are not able to contain the dynamic nature of new techniques and threats, which are increasingly adaptive and complex. In this scenario, threat intelligence sharing is growing. However, the heterogeneity and the large volume of threat data make it difficult to identify the relevant data, imposing significant limitations on security analysts. Among the factors contributing to the low quality of Cyber Threat Intelligence (CTI), the lack of direction and planning stands out, resulting in the production of inaccurate, incomplete, or outdated information that leads to reactive actions. However, quality threat intelligence has a positive impact on the response time to an incident. The proposed solution to overcome this limitation is the adoption of a knowledge production process based on the intelligence cycle, supported by situational awareness and the 5W3H model for context creation. The direction and planning phase isthe least addressed phase in scientific research, but when executed properly it directly contributes to the relevance, accuracy and timeliness of the intelligence produced, as it defines the purpose and scope of the subsequent steps. The next phases of the process aims at the progressive refinement of data, which starts with a large volume and low relevance and, by means of evaluation, search for correlations, analysis, context formation, and interpretation, ends up with a low volume, but capable of being used for decision making.


BANKING MEMBERS:
Externo à Instituição - DINO MACEDO AMARAL - BB
Interno - 2556078 - GEORGES DANIEL AMVAME NZE
Presidente - 1141309 - JOAO JOSE COSTA GONDIM
Interno - 2363646 - RAFAEL RABELO NUNES
Notícia cadastrada em: 16/06/2023 15:17
SIGAA | Secretaria de Tecnologia da Informação - STI - (61) 3107-0102 | Copyright © 2006-2024 - UFRN - app32_Prod.sigaa26