Skip to Main Content
 

Global Search Box

 
 
 
 

Files

ETD Abstract Container

Abstract Header

Automated Deployment of a Security Operations Center

Cardarelli, Anthony

Abstract Details

2020, MS, University of Cincinnati, Engineering and Applied Science: Computer Science.
Cyber security is a growing issue for organizations today. Larger companies deploy security operations centers to unify their security tools in order provide cyber defense and incident response. Sadly small and medium sized businesses lack the funding to build, operate, and hire the skilled labor required to stand up a SOC (security operations center). The knowledge base required to solve this problem comes from extensive research and is not widely known. A low cost, easy to deploy and operate solution could help bridge the cyber security preparedness gap between large, and small to medium sized businesses by providing the foundation of a security operations center. This will secure the companies deploying a SOC along with the supply chains they are associated with. This paper outlines the automated deployment of a SOC that unifies network security, host based security, threat intelligence, and reporting in an easy to use and low cost platform. This was accomplished by integrating open source projects into a modular, easy to use, and customizable framework to meet the diverse needs of companies. SOC functionality was measurably verified by attacking and mapping resulting detections to common techniques seen in cyber attacks. The resulting SOC framework deploys in under an hour, provides intuitive reporting, and detects 81 of the most common techniques used by hackers. This work is a step in the right direction for securing companies and provides a foundation that can be further improved upon to help shrink the attack surface of the global threat landscape.
John Franco, Ph.D. (Committee Chair)
Gowtham Atluri, Ph.D. (Committee Member)
Raj Bhatnagar, Ph.D. (Committee Member)
79 p.

Recommended Citations

Citations

  • Cardarelli, A. (2020). Automated Deployment of a Security Operations Center [Master's thesis, University of Cincinnati]. OhioLINK Electronic Theses and Dissertations Center. http://rave.ohiolink.edu/etdc/view?acc_num=ucin1592133599167901

    APA Style (7th edition)

  • Cardarelli, Anthony. Automated Deployment of a Security Operations Center. 2020. University of Cincinnati, Master's thesis. OhioLINK Electronic Theses and Dissertations Center, http://rave.ohiolink.edu/etdc/view?acc_num=ucin1592133599167901.

    MLA Style (8th edition)

  • Cardarelli, Anthony. "Automated Deployment of a Security Operations Center." Master's thesis, University of Cincinnati, 2020. http://rave.ohiolink.edu/etdc/view?acc_num=ucin1592133599167901

    Chicago Manual of Style (17th edition)