dc.contributor.author | Forsberg, Joonas | |
dc.contributor.author | Frantti, Tapio | |
dc.date.accessioned | 2023-10-18T10:05:31Z | |
dc.date.available | 2023-10-18T10:05:31Z | |
dc.date.issued | 2023 | |
dc.identifier.citation | Forsberg, J., & Frantti, T. (2023). Technical Performance Metrics of a Security Operations Center. <i>Computers and Security</i>, <i>135</i>, Article 103529. <a href="https://doi.org/10.1016/j.cose.2023.103529" target="_blank">https://doi.org/10.1016/j.cose.2023.103529</a> | |
dc.identifier.other | CONVID_193402946 | |
dc.identifier.uri | https://jyx.jyu.fi/handle/123456789/90111 | |
dc.description.abstract | This research introduces a novel framework for creating metrics intended for security operations centers (SOCs). The framework is developed using the design science research methodology and has been validated by generating four novel metrics to assess the technical performance of a SOC. Additionally, the study examines the existing landscape of metrics for SOCs and concludes that a majority of the metrics discussed in the literature primarily focus on operational aspects rather than technical performance. The absence of adequate technical performance metrics makes it challenging to accurately evaluate the tangible impact of a SOC on overall cyber defense capabilities. The research also highlights the insufficiency of current methods in constructing metrics and frameworks tailored for measuring SOCs' technical performance. The resulting framework offers SOCs means to create high-quality metrics for performance evaluation. Furthermore, the metrics the framework was validated with offer SOCs an opportunity to enhance their ability to quantify their threat detection capabilities. | en |
dc.format.mimetype | application/pdf | |
dc.language.iso | eng | |
dc.publisher | Elsevier | |
dc.relation.ispartofseries | Computers and Security | |
dc.rights | CC BY 4.0 | |
dc.subject.other | security operations center | |
dc.subject.other | soc | |
dc.subject.other | csoc | |
dc.subject.other | cyber security operations center | |
dc.subject.other | metric | |
dc.subject.other | measurement | |
dc.subject.other | technical performance | |
dc.subject.other | cyber defense | |
dc.subject.other | performance indicator | |
dc.title | Technical Performance Metrics of a Security Operations Center | |
dc.type | research article | |
dc.identifier.urn | URN:NBN:fi:jyu-202310186149 | |
dc.contributor.laitos | Informaatioteknologian tiedekunta | fi |
dc.contributor.laitos | Faculty of Information Technology | en |
dc.type.uri | http://purl.org/eprint/type/JournalArticle | |
dc.type.coar | http://purl.org/coar/resource_type/c_2df8fbb1 | |
dc.description.reviewstatus | peerReviewed | |
dc.relation.issn | 0167-4048 | |
dc.relation.volume | 135 | |
dc.type.version | publishedVersion | |
dc.rights.copyright | © 2023 The Author(s). Published by Elsevier Ltd. | |
dc.rights.accesslevel | openAccess | fi |
dc.type.publication | article | |
dc.relation.grantnumber | 10/31/2022 | |
dc.subject.yso | mittaus | |
dc.subject.yso | kyberturvallisuus | |
dc.subject.yso | mittausmenetelmät | |
dc.subject.yso | mittarit (mittaus) | |
dc.format.content | fulltext | |
jyx.subject.uri | http://www.yso.fi/onto/yso/p4794 | |
jyx.subject.uri | http://www.yso.fi/onto/yso/p26189 | |
jyx.subject.uri | http://www.yso.fi/onto/yso/p20083 | |
jyx.subject.uri | http://www.yso.fi/onto/yso/p21210 | |
dc.rights.url | https://creativecommons.org/licenses/by/4.0/ | |
dc.relation.doi | 10.1016/j.cose.2023.103529 | |
dc.relation.funder | Business Finland | en |
dc.relation.funder | Business Finland | fi |
jyx.fundingprogram | Co-Innovation, BF | en |
jyx.fundingprogram | Co-Innovation, BF | fi |
jyx.fundinginformation | The research was supported by Business Finland (grant number 10/31/2022) and the University of Jyväskylä. | |
dc.type.okm | A1 | |