Security Information and Event Management (SIEM) systems are a fundamental component of the ubiquitous ICT infrastructures that form the backbone of our digital society. These systems are mostly used to monitor infrastructures usi...
ver más
¿Tienes un proyecto y buscas un partner? Gracias a nuestro motor inteligente podemos recomendarte los mejores socios y ponerte en contacto con ellos. Te lo explicamos en este video
Proyectos interesantes
MASSIF
MAnagement of Security information and events in Service InF...
9M€
Cerrado
PUZZLE
Towards a Sophisticated SIEM Marketplace for Blockchain base...
5M€
Cerrado
TIN2013-48319-R
ESTUDIO DE TECNOLOGIAS INTELIGENTES PARA LA MONITORIZACION D...
40K€
Cerrado
PID2019-111388GB-I00
DETECCION TEMPRANA DE INTRUSIONES Y ANOMALIAS EN REDES DEFIN...
43K€
Cerrado
PALANTIR
Practical Autonomous Cyberhealth for resilient SMEs Microe...
5M€
Cerrado
Fecha límite de participación
Sin fecha límite de participación.
Descripción del proyecto
Security Information and Event Management (SIEM) systems are a fundamental component of the ubiquitous ICT infrastructures that form the backbone of our digital society. These systems are mostly used to monitor infrastructures using many types of sensors and tools and correlate the obtained events to discover possible threats (attacks, vulnerabilities, etc.) to the organization. The DiSIEM project aims to enhance existing SIEM systems with diversity-related technology. More specifically, we want to (1) enhance the quality of events collected using a diverse set of sensors and novel anomaly detectors, (2) add support for collecting infrastructure-related information from open-source intelligence data available on diverse sources from the internet, (3) create new ways for visualising the information collected in the SIEM and provide high-level security metrics and models for improving security-related decision project, and (4) allow the use of multiple storage clouds for secure long-term archival of the raw events feed to the SIEM. Given the high costs of deployment of SIEM infrastructures, all these enhancements will be developed in a SIEM-independent way, as extensions to currently available systems, and will be validated through the deployed in three large-scale production environments.