Global Information Lookup Global Information

Information security indicators information


In information technology, benchmarking of computer security requires measurements for comparing both different IT systems and single IT systems in dedicated situations. The technical approach is a pre-defined catalog of security events (security incident and vulnerability) together with corresponding formula for the calculation of security indicators that are accepted and comprehensive.

Information security indicators have been standardized by the ETSI Industrial Specification Group (ISG) ISI. These indicators provide the basis to switch from a qualitative to a quantitative culture in IT Security Scope of measurements: External and internal threats (attempt and success), user's deviant behaviours, nonconformities and/or vulnerabilities (software, configuration, behavioural, general security framework). In 2019 the ISG ISI terminated and related standards will be maintained via the ETSI TC CYBER.

The list of Information Security Indicators belongs to the ISI framework that consists of the following eight closely linked Work Items:

  1. ISI Indicators (ISI-001-1[1] and Guide ISI-001-2[2]): A powerful way to assess security controls level of enforcement and effectiveness (+ benchmarking)
  2. ISI Event Model (ISI-002[3]): A comprehensive security event classification model (taxonomy + representation)
  3. ISI Maturity (ISI-003[4]): Necessary to assess the maturity level regarding overall SIEM capabilities (technology/people/process) and to weigh event detection results. Methodology complemented by ISI-005 (which is a more detailed and case-by-case approach)
  4. ISI Guidelines for event detection implementation (ISI-004[5]): Demonstrate through examples how to produce indicators and how to detect the related events with various means and methods (with classification of use cases/symptoms)
  5. ISI Event Stimulation (ISI-005[6]): Propose a way to produce security events and to test the effectiveness of existing detection means (for major types of events)
  6. An ISI-compliant Measurement and Event Management Architecture for Cyber Security and Safety (ISI-006[7]): This work item focuses on designing a cybersecurity language to model threat intelligence information and enable detection tools interoperability.
  7. ISI Guidelines for building and operating a secured SOC (ISI-007[8]): A set of requirements to build and operate a secured SOC (Security Operations Center) addressing technical, human and process aspects.
  8. ISI Description of a whole organization-wide SIEM approach (ISI-008[9]): A whole SIEM (CERT/SOC based) approach positioning all ISI aspects and specifications.

Preliminary work on information security indicators have been done by the French Club R2GS. The first public set of the ISI standards (security indicators list and event model) have been released in April 2013.

  1. ^ ETSI GS ISI 001-1 (V1.1.2): ISI Indicators Part 1; A full set of operational indicators for organizations to use to benchmark their security posture (2015-06) [1]
  2. ^ ETSI GS ISI 001-2 (V1.1.2): ISI Indicators Part 2; Guide to select operational indicators based on the full set given in part 1 (2015-06) [2]
  3. ^ ETSI GS ISI 002 (V1.2.1): ISI Event Model; A security event classification model and taxonomy (2015-11) [3]
  4. ^ ETSI GS ISI 003 (V1.2.1): ISI Key Performance Security Indicators (KPSI) to evaluate the maturity of security event detection (2018-01) [4]
  5. ^ ETSI GS ISI 004 (V1.1.1): ISI Guidelines for event detection implementation (2013-12) [5]
  6. ^ ETSI GS ISI 005 (V1.1.1): ISI Guidelines for security event detection testing and assessment of detection effectiveness (2015-11) [6]
  7. ^ ETSI GS ISI 006 (V1.1.1): An ISI-driven Measurement and Event Management Architecture (IMA) and CSlang - A Common ISI Semantics Specification Language (2019-02) [7]
  8. ^ ETSI GS ISI 007 (V1.1.1): Guidelines for building and operating a secured Security Operations Center (SOC) (2018-12) [8]
  9. ^ ETSI GS ISI 008 (V1.1.1): Description of an Overall Organization-wide Security Information and Event Management (SIEM) Approach (2018-06) [9]

and 26 Related for: Information security indicators information

Request time (Page generated in 0.8786 seconds.)

Information security indicators

Last Update:

comprehensive. Information security indicators have been standardized by the ETSI Industrial Specification Group (ISG) ISI. These indicators provide the...

Word Count : 638

Information security

Last Update:

Information security indicators Information security management Information security standards Information technology Information technology security audit...

Word Count : 22122

Security information and event management

Last Update:

Security information and event management (SIEM) is a field within the field of computer security, where software products and services combine security...

Word Count : 4095

Indicator of compromise

Last Update:

indicators are usually exchanged within the industry, where the Traffic Light Protocol is being used. AlienVault Mandiant Malware Malware Information...

Word Count : 329

Information sensitivity

Last Update:

Information sensitivity is the control of access to information or knowledge that might result in loss of an advantage or level of security if disclosed...

Word Count : 2446

Information governance

Last Update:

encompasses more than traditional records management. It incorporates information security and protection, compliance, data quality, data governance, electronic...

Word Count : 2109

ITIL security management

Last Update:

define security requirements, along with legislation (if applicable) and other contracts. These requirements can act as key performance indicators (KPIs)...

Word Count : 2121

SCADA

Last Update:

acknowledge the alarm event; this may deactivate some alarm indicators, whereas other indicators remain active until the alarm conditions are cleared. Alarm...

Word Count : 4658

Cybersecurity Information Sharing Act

Last Update:

system for handling incoming indicators from Industry. Privacy advocates opposed a version of the Cybersecurity Information Sharing Act, passed by the Senate...

Word Count : 2016

Sustainable Development Goal 2

Last Update:

(WHO) For all Indicators under Targets 2.3 and 2.5, and for Indicators 2.a.1 and 2.c.1: Food and Agriculture Organization (FAO) Indicator 2.4.1: United...

Word Count : 4261

Cyber threat intelligence

Last Update:

Provide indicators for computer emergency response teams and incident response groups. There are three key elements that must be present for information or...

Word Count : 1826

Women Peace and Security Index

Last Update:

2023, four indexes have been released. The researchers use a total of 13 indicators, spanning from employment and education regulations to perceptions of...

Word Count : 277

Information ratio

Last Update:

The information ratio measures and compares the active return of an investment (e.g., a security or portfolio) compared to a benchmark index relative to...

Word Count : 859

Pizza Meter

Last Update:

indicators of American strategic moves. This phenomenon was described in detail by Mark M. Lowenthal, an expert on intelligence and national security...

Word Count : 1656

Security Industry Authority

Last Update:

The Security Industry Authority (SIA) is the statutory organisation responsible for regulating the private security industry in the UK. Established as...

Word Count : 1767

Food security

Last Update:

the objective of food security indicators and measurements is to capture some or all of the main components of food security in terms of food availability...

Word Count : 18338

Cyber threat hunting

Last Update:

can provide threat indicators at higher semantic levels. There are two types of indicators: Indicator of compromise - An indicator of compromise (IOC)...

Word Count : 1130

Technical analysis

Last Update:

future trends is what technical indicators are designed to do, although neither technical nor fundamental indicators are perfect. Some traders use technical...

Word Count : 7227

Extended Validation Certificate

Last Update:

Certificate Indicator". Bleeping Computer. Retrieved 2021-06-14. "Improved Security and Privacy Indicators in Firefox 70". Mozilla Security Blog. 15 October...

Word Count : 2006

Governance

Last Update:

Governance Indicators project, developed by members of the World Bank and the World Bank Institute. The project reports aggregate and individual indicators for...

Word Count : 7937

Total Information Awareness

Last Update:

behavioral indicators, and pre-diagnostic medical data. It would leverage existing disease models, identify abnormal health early indicators, and mine...

Word Count : 4443

Global Peace Index

Last Update:

suggestive of peacefulness. In 2017, 23 indicators were used to establish peacefulness scores for each country. The indicators were originally selected with the...

Word Count : 1834

Economic security

Last Update:

Retirement Security: Women Face Challenges in Ensuring Financial Security in Retirement Childstats.gov - America's Children: Key National Indicators of Well-Being...

Word Count : 1187

Malware Information Sharing Platform

Last Update:

and documentation for more effective threat intelligence, by sharing indicators of compromise. There are several organizations who run MISP instances...

Word Count : 644

List of security hacking incidents

Last Update:

The list of security hacking incidents covers important or noteworthy events in the history of security hacking and cracking. Magician and inventor Nevil...

Word Count : 14675

List of Sustainable Development Goal targets and indicators

Last Update:

targets and indicators provides a complete overview of all the targets and indicators for the 17 Sustainable Development Goals. The global indicator framework...

Word Count : 1556

PDF Search Engine © AllGlobal.net