Browse > Article
http://dx.doi.org/10.5392/JKCA.2021.21.10.059

Application of Integrated Security Control of Artificial Intelligence Technology and Improvement of Cyber-Threat Response Process  

Ko, Kwang-Soo (배재대학교대학원 사이버보안학과)
Jo, In-June (배재대학교대학원 사이버보안학과)
Publication Information
Abstract
In this paper, an improved integrated security control procedure is newly proposed by applying artificial intelligence technology to integrated security control and unifying the existing security control and AI security control response procedures. Current cyber security control is highly dependent on the level of human ability. In other words, it is practically unreasonable to analyze various logs generated by people from different types of equipment and analyze and process all of the security events that are rapidly increasing. And, the signature-based security equipment that detects by matching a string and a pattern has insufficient functions to accurately detect advanced and advanced cyberattacks such as APT (Advanced Persistent Threat). As one way to solve these pending problems, the artificial intelligence technology of supervised and unsupervised learning is applied to the detection and analysis of cyber attacks, and through this, the analysis of logs and events that occur innumerable times is automated and intelligent through this. The level of response has been raised in the overall aspect by making it possible to predict and block the continuous occurrence of cyberattacks. And after applying AI security control technology, an improved integrated security control service model was newly proposed by integrating and solving the problem of overlapping detection of AI and SIEM into a unified breach response process(procedure).
Keywords
Integrated Security Control; Artificial Intelligence; (Un)Supervised Learning; SIEM;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 김규일, 박학수, 최지연, 고상준, 송중석, "보안관제 효율성 제고를 위한 실증적 분석 기반 보안이벤트 자동검증 방법," 정보보호학회논문지, Vol.24, No.3, pp.507-522, 2014.   DOI
2 류권상, 최대선, "인공지능 보안 공격 및 대응 방안 연구 동향," 정보보호학회지, Vol.30, No.5, pp.93-99, 2020.
3 최동열, 안은영, "빅데이터를 이용한 자동 이슈 분석 시스템," 한국콘텐츠학회논문지, Vol.20, No.2, pp.240-247, 2020.   DOI
4 국경완, 공병철, 인공지능을 활용한 보안기술 개발 동향, 정보통신기획평가원, 2019.
5 유홍렬, 정성미, 권태경, "새롭게 진화하는 위협의 패러다임 - 지능형 지속 위협(APT)," 전자공학회지, Vol.41, No.4, pp.16-30, 2014.
6 이세호, 조인준, "사이버보안 프레임워크 기반의 보안 오케스트레이션 서비스 모델 제안," 한국콘텐츠학회논문지, Vol.20, No.7, pp.618-628, 2020.   DOI
7 한국인터넷진흥원, 악성코드_은닉사이트_탐지_동향_보고서(20년_하반기), 2020.
8 김기영, 김종현, "빅데이터 환경에서 통합 보안관제를 위한 이종 보안정보 이벤트 수집 및 공유기술 동향," 한국정보기술학회지, 제10권, 제3호, pp.23-30, 2012.
9 https://www.igloosec.com
10 Cisco 2018 Security Capabilities Benchmark Study, 2018.