2018 National Cyber Summit (NCS) 2018
DOI: 10.1109/ncs.2018.00007
|View full text |Cite
|
Sign up to set email alerts
|

Playbook Oriented Cyber Response

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
7
0

Year Published

2020
2020
2024
2024

Publication Types

Select...
2
2
1

Relationship

0
5

Authors

Journals

citations
Cited by 8 publications
(10 citation statements)
references
References 15 publications
0
7
0
Order By: Relevance
“…Thus, despite their partial relevance, we provide detailed analyses for six incident response formats only. Following the inception of the Integrated Adaptive Cyber Defense (IACD) Framework [39] in 2014, subsequently, the formats Open Command and Control (OpenC2) [40], Collaborative Open Playbook Standard (COPS) [38], Collaborative Automated Course of Action Operations (CACAO) for Cyber Security [37], Resilient Event Conditions Action System against Threats (RECAST) Framework [42] and RE&CT Framework [41] have been introduced (see Figure 4).…”
Section: Incident Response Formatsmentioning
confidence: 99%
See 3 more Smart Citations
“…Thus, despite their partial relevance, we provide detailed analyses for six incident response formats only. Following the inception of the Integrated Adaptive Cyber Defense (IACD) Framework [39] in 2014, subsequently, the formats Open Command and Control (OpenC2) [40], Collaborative Open Playbook Standard (COPS) [38], Collaborative Automated Course of Action Operations (CACAO) for Cyber Security [37], Resilient Event Conditions Action System against Threats (RECAST) Framework [42] and RE&CT Framework [41] have been introduced (see Figure 4).…”
Section: Incident Response Formatsmentioning
confidence: 99%
“…Several papers cover the overall IACD project and its reference architecture [108], [109], [110], [111], [112]. Besides, [100] and [42] mention the IACD approach and playbook format in connection with other incident response formats. • Gray literature on IACD includes first and foremost the playbook specification [39] and documentation covering the overarching reference architecture [107].…”
Section: Cops -Summary and Recommendationsmentioning
confidence: 99%
See 2 more Smart Citations
“…Further research is necessary to show how different training methods can be applied in the context of SOCs and measure their effectiveness. An interesting approach to improve on-the-job learning and training is pursued by Applebaum et al [95] by developing playbooks that provide analysts with an overview of tasks and actions based on the experience of other analysts. Also, knowledge graphs representing the domain knowledge and experience of SOC analysts enable better learning and training for others [89], [95].…”
Section: ) Training and Awarenessmentioning
confidence: 99%