Information Discovery in Cybersecurity Incident Data Reported to DHS

Abstract

The Information Discovery project applies research techniques to analyze incidents reported to DHS. The project improves visibility into bulk incident ticketing data primarily by leveraging information already provided in free text fields. Project tasks include. Extracting data fields. Performing analysis across multiple incident reports at the same time. Automating incident knowledge discovery tasks. Developing and applying metrics for incident reporting and indicators. Building and using interactive incident and indicator data visualizations. Transitioning methods into tools for data analysts and incident responder.

Open PDF

Document Details

Document Type
Technical Report
Publication Date
Jan 01, 2017
Accession Number
AD1087062

Entities

People

  • Robin Ruefle
  • Sam Perl

Organizations

  • Carnegie Mellon University

Tags

DTIC Thesaurus Topics

  • Best Practices
  • Communities
  • Computer Network Security
  • Cybersecurity
  • Data Mining
  • Data Visualization
  • Department Of Homeland Security
  • Electronic Mail
  • Engineering
  • Governments
  • Homeland Security
  • Information Security
  • Knowledge Management
  • National Governments
  • Security
  • Software Development
  • User Interface

Fields of Study

  • Computer science

Readers

  • Emergency Management and Homeland Security.
  • Geospatial Intelligence and Artificial Intelligence Analytics
  • Team-Based Human-Centered Cognitive Task Decision Making and Information Performance.

Technology Areas

  • Cyber