A Collaborative Analysis Method for Information Security Management Center

A security management and information security technology, applied in the field of collaborative analysis of the information security management center, can solve problems such as insufficient information security threat detection and prevention capabilities, and achieve the effect of improving the accuracy rate

Active Publication Date: 2018-02-27
GUANGDONG ELECTRONICS IND INST
View PDF18 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0016] The technical problem solved by the present invention is to propose a collaborative analysis method for the information security management center, which can fully mobilize the various SOC For the suspected or undiscovered threats discovered by each SOC, through the collaborative processing of each SOC, real information security threats can be discovered earlier and faster, and the threats can be dealt with before they turn into real risks. nip in the bud
Further improve information security protection capabilities

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A Collaborative Analysis Method for Information Security Management Center
  • A Collaborative Analysis Method for Information Security Management Center
  • A Collaborative Analysis Method for Information Security Management Center

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0040] In order to facilitate the understanding of the present invention, the present invention will be described in detail below in conjunction with specific embodiments.

[0041] The architecture of the collaborative safety management center involved in the present invention is as follows: figure 1 shown. The system includes: security event management module, security business module, control center, security policy library, log database, and network collaboration module.

[0042] Security Event Management Module

[0043] This module includes: a security event collection sub-module, a security event preprocessing sub-module and a security event analysis sub-module.

[0044] Security event collection sub-module

[0045] The security event information sent by various information security devices can be collected in a variety of ways, and the collection methods include the following: (1) Collect events based on SNMP Trap and Syslog. (2) Obtain security-related information o...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of information safety, in particular to a collaborative analysis method of information security operation centers. An internetwork collaborative module of one of the security operation centers sends suspected threat information, then a safety event management module analyzes the suspected threat information, and it is determined that a threat is found if the threat meets the standard of a certain attack event; a receiver finding the threat informs a sender of the suspected threat and other security operation centers of confirmation information through the internetwork collaborative module; a requester takes corresponding measures through a safety strategy library; if the sender does not find the threat by himself, correlation analysis of the second stage is carried out by communication between the sender and other receivers; all the security operation centers take corresponding measures for response after receiving the information. The collaborative analysis method of the information security operation centers achieves the collaborative analysis of the information security operation centers and can be used for the security operation centers for information security operation.

Description

technical field [0001] The invention relates to the technical field of information security, in particular to a collaborative analysis method for an information security management center. Background technique [0002] Security Operation Center (SOC) is a term that describes a management platform that can provide collection, analysis and response to various information security events. The core function of SOC is the detection and response function, which is based on the Analyze massive security incidents, judge the security status and security trends of the information systems it manages, and respond to serious security incidents in a timely manner. [0003] Information security events: log information, alarm information, etc. generated by various information security devices. [0004] With the advancement of my country's informatization construction and the increasing emphasis on information security from all walks of life, firewalls, anti-virus and IDS (Intrusion Detecti...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
CPCH04L63/1408
Inventor 王伟岳强
Owner GUANGDONG ELECTRONICS IND INST
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products