Research Impact & Highlights Details

Advancing Cybersecurity: Establishing a Cognitive Security Operations Center for Smart Cities

01 Oct 2024 @ 09:00 AM

Interdisciplinary Center for Intelligent Secure Systems ____________________________________________________________________________________

A SOC is a centralized system that employs people, processes, and technology to monitor, analyze, detect, and prevent cyber-attacks continuously. Every organization has a SOC to monitor its cyber assets. Context and situation-aware monitoring with interactive commands enhance the ability to respond to real-time security incidents.

By leveraging GenAI models for attack prediction, organizations can proactively identify potential threats before they materialize. Secure and privacy-preserving log sharing among Security Operations Centers (SOCs) fosters collaboration while protecting sensitive information. These strategies create a robust defense mechanism that adapts to evolving cyber threats and ensures data integrity.

The challenges in cybersecurity are multifaceted, including a significant skills shortage that hampers effective defense against advanced persistent threats. The rise of big data further complicates the landscape, necessitating robust SOC automation and orchestration to efficiently manage and respond to incidents. Addressing these challenges is essential for enhancing overall cybersecurity resilience.

The impact this system has is that it reduces alert fatigue by 10x, automates monitoring routines, predicts advanced persistent attacks ahead of time using GenAI, and integrates infrastructure-specific information into the detection and prediction processes to enhance accuracy and relevance.

______________________________________

Partners:

  • Cyberani
  • Solidrange

Sustainable Development Goals: