A prototype of threat detection on big data using behavioural analytics for government ministries Terry Wambui Macharia

By: Contributor(s): Publication details: Nairobi, Strathmore University 2015Description: xiii,79 p. ; illSubject(s): LOC classification:
  • LD5340.7.M33 2015
Online resources: Summary: While no one would dispute the capability of big data to enlighten enterprise operations, the present methods of mining and managing big data are still evolving and are posing serious security and privacy challenges. Currently the greatest challenge for most Information Technology security practioners is that they’re unable to detect unknown insider threats on company valuable data in real time. This research sought to identify the different types of data as well as insider threats associated with the different types of data. Further for detection of insider threat to be successful there is need to separate legitimate behaviour from malicious behaviour with the use of behavioural analytics and machine learning. The research further sought to review the different approaches to network anomaly detection and build on their shortcomings. The shortcomings/loopholes formed the basis for the design of the prototype. From the results of the online survey carried out among security administrators it was determined that non-technical users were the likely offenders and hence caused the greatest risk to company’s valuable data. Further technical approaches were found to be the most effective techniques in mitigating insider threats. Detection of insider threat can’t be achieved with only one technique; a combination of techniques should be put into perspective if insider threat has to be successfully mitigated. Sound organizational procedures as well as policies that include controls are crucial to support the implementation of a tool that will detect insider threats in real time.
Reviews from LibraryThing.com: List(s) this item appears in: STRATHMORE THESES & DISSERTATIONS
Tags from this library: No tags from this library for this title. Log in to add tags.
Star ratings
    Average rating: 0.0 (0 votes)
Holdings
Item type Current library Collection Call number Status Date due Barcode Item holds
Thesis Thesis Strathmore University (Main Library) Special Collection Special Collection LD5340.7.M33 2015 Not for loan 98134
Total holds: 0

While no one would dispute the capability of big data to enlighten enterprise operations, the present methods of mining and managing big data are still evolving and are posing serious security and privacy challenges. Currently the greatest challenge for most Information Technology security practioners is that they’re unable to detect unknown insider threats on company valuable data in real time. This research sought to identify the different types of data as well as insider threats associated with the different types of data.
Further for detection of insider threat to be successful there is need to separate legitimate behaviour from malicious behaviour with the use of behavioural analytics and machine learning. The research further sought to review the different approaches to network anomaly detection and build on their shortcomings. The shortcomings/loopholes formed the basis for the design of the prototype. From the results of the online survey carried out among security administrators it was determined that non-technical users were the likely offenders and hence caused the greatest risk to company’s valuable data. Further technical approaches were found to be the most effective techniques in mitigating insider threats.
Detection of insider threat can’t be achieved with only one technique; a combination of techniques should be put into perspective if insider threat has to be successfully mitigated. Sound organizational procedures as well as policies that include controls are crucial to support the implementation of a tool that will detect insider threats in real time.

There are no comments on this title.

to post a comment.

© Strathmore University Library Madaraka Estate Ole, Sangale Road P. O. Box 59857 00200 City Square Nairobi Kenya
Tel.: (+254) (0)703 034000/(0)703 034200/(0)703 034300 Fax.: (+254) (0)20-607498