• DocumentCode
    2844760
  • Title

    Cover-VT: Converged Security Visualization Tool

  • Author

    Urbanski, William ; Dun, Matthew ; Marchany, Randy ; Tront, Joseph

  • Author_Institution
    Bradley Dept. of Electr. & Comput. Eng., Virginia Tech, Blacksburg, VA, USA
  • fYear
    2011
  • fDate
    23-27 May 2011
  • Firstpage
    714
  • Lastpage
    717
  • Abstract
    The amount of data that floods today´s networks is well beyond what security analysts can manage by textual means alone. In an effort to solve this problem, researchers have explored different methods of visualizing network security threats. There is little debate that humans can perceive more information visually than textually. The problem is that the majority of visualization tools in practice or proposed do not take efficient visualization techniques into consideration. As a result, it is difficult to get a high-level view of the network that facilitates rapid isolation of network attacks. We propose the Converged Security Visualization Tool (Cover-VT) to solve the efficient visualization problem. Cover-VT was designed to provide analysts with a high-level view of network threats using geographic information systems. The tool allows for rapid identification of threats by minimizing the cognitive obstacles to efficient threat location. Cover-VT includes the capability to drill-down on a node of interest for additional details and even filter out unwanted data. Cover-VT was designed with usability in mind, making it easy to comprehend while assisting the analyst in rapid threat identification. Many different security tools make up a security analyst´s tool kit. Cover-VT was developed as an effective security visualization system that integrates existing security tools and network security systems.
  • Keywords
    data visualisation; geographic information systems; information networks; security of data; Cover-VT; converged security visualization tool; geographic information systems; network attacks; network security systems; network security threats; rapid threat identification; security analysts; threat location; Fires; Monitoring; Visualization; Converged Security; Security Management; Visualization;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Integrated Network Management (IM), 2011 IFIP/IEEE International Symposium on
  • Conference_Location
    Dublin
  • Print_ISBN
    978-1-4244-9219-0
  • Electronic_ISBN
    978-1-4244-9220-6
  • Type

    conf

  • DOI
    10.1109/INM.2011.5990663
  • Filename
    5990663