Integration into Cyber Security Management System
Abstract
The purpose of this task was to integrate technology developed as part of the World Infrastructure Security Environment (WISE) program by Orincon Information Assurance into the Air Force Research Laboratory (AFRL) Cyber Security Management System (CSMS). The intended capabilities of WISE are to monitor host activity in real-time, alert analysts about information attacks utilizing a cost-benefit model, and recommend information-based countermeasures. Collection of WISE data into CSMS would enable quicker and more accurate response to threats against enterprise networks. However, at the time that this system integration work was performed, WISE and CSMS were not available. Therefore, since Orincon's Distributed Agent Information Watch (DAIWatch) is the precursor to WISE and AFRL's Air Force Enterprise Defense system (AFED) is the forerunner to CSMS, it was decided to enhance the method of data transfer from DAIWatch to AFED, which, at some future point in time, could be adapted for use by the WISE and CSMS programs, with a modicum of effort.
Document Details
- Document Type
- Technical Report
- Publication Date
- Oct 01, 2005
- Accession Number
- ADA440652
Entities
Organizations
- Northrop Grumman