Title :
Discovering emergent norms in security logs
Author :
Pieczul, Olgierd ; Foley, Simon N.
Author_Institution :
IBM Software Group, Ireland Lab., Dublin, Ireland
Abstract :
A model is presented that characterizes security logs as a collection of norms that reflect patterns of emergent behavior. An analysis technique for detecting behavioral norms based on these logs is described and evaluated. The application of behavioral norms is considered, including its use in system security evaluation and anomaly detection.
Keywords :
behavioural sciences; security of data; anomaly detection; behavioral norms; emergent norms; reflect patterns; security logs; system security evaluation; Approximation methods; Authentication; Automation; Computational modeling; Educational institutions; Kernel;
Conference_Titel :
Communications and Network Security (CNS), 2013 IEEE Conference on
Conference_Location :
National Harbor, MD
DOI :
10.1109/CNS.2013.6682758