Distributed Profile of Typical User Behavior in a Multi-System Environment
New Challenges of Economic and Business Development – 2017: Digital Economy: Proceedings of Reports 2017
Pāvels Osipovs, Jurijs Čižovs, Vitālijs Zabiņako

Information systems (ISs) of large organisations are constantly becoming more complex. As a result, it is becoming extremely difficult to secure against internal threats and safeguard sensitive data in such a multi-system environment. There is a need for a common centralised data protection platform. One way to defend against internal threats using intelligent algorithms is Anomaly Activity Detection (AAD). To gain benefits of AAD systems and avoid their typical problems, we have developed our own AAD framework, which is embedded into the IS at the application level of the OSI model. To solve the problems associated with the growth of the number of information systems, an extension of common user behaviour profile to a distributed one has been developed within the framework of the research. One user has a common profile for all ISs of a corporate information network; as a result, the costs of implementing, maintaining and using the abnormal behaviour detection system are significantly reduced. At the same time, there is a cumulative effect when the amount of data about the user behaviour increases due to their receipt from all target ISs, which gives improvement in the efficiency of such a global profile. The paper proposes three approaches to building distributed profiles of user behaviour.


Atslēgas vārdi
Anomaly Activity Detection, distributed profile of user behaviour, Markov chain, multi-system environment
Hipersaite
https://www.bvef.lu.lv/fileadmin/user_upload/lu_portal/projekti/evf_conf2017/Proceedings_of_Reports.pdf

Osipovs, P., Čižovs, J., Zabiņako, V. Distributed Profile of Typical User Behavior in a Multi-System Environment. No: New Challenges of Economic and Business Development – 2017: Digital Economy: Proceedings of Reports, Latvija, Riga, 18.-20. maijs, 2017. Riga: University of Latvia, 2017, 377.-386.lpp. ISBN 978-9934-18-242-6.

Publikācijas valoda
English (en)
RTU Zinātniskā bibliotēka.
E-pasts: uzzinas@rtu.lv; Tālr: +371 28399196