Identifying Expertise Gaps in Cyber Incident Response: Cyber Defender Needs vs. Technological Development
Identifying Expertise Gaps in Cyber Incident Response: Cyber Defender Needs vs. Technological Development
dc.contributor.author | Nyre-Yu, Megan | |
dc.date.accessioned | 2020-12-24T19:23:41Z | |
dc.date.available | 2020-12-24T19:23:41Z | |
dc.date.issued | 2021-01-05 | |
dc.description.abstract | Incident response is an area within cyber defense that is responsible for detecting, mitigating, and preventing threats within a given network. Like other areas of cyber security, incident response is experiencing a shortage of qualified workers which has led to technological development aimed at alleviating labor-related pressures on organizations. A cognitive task analysis was conducted with incident response experts to capture expertise requirements and used an existing construct to help prioritize development of new technology. Findings indicated that current software development incorporates factors such as analyst efficiency and consistency. Gaps were identified regarding communication and team navigation that are inherent to dynamic team environments. This research identified which expertise areas are needed at lower-tier levels of incident response and which of those areas current automation platforms are addressing. These gaps help focus future studies by bridging expertise research to development efforts. | |
dc.format.extent | 10 pages | |
dc.identifier.doi | 10.24251/HICSS.2021.242 | |
dc.identifier.isbn | 978-0-9981331-4-0 | |
dc.identifier.uri | http://hdl.handle.net/10125/70855 | |
dc.language.iso | English | |
dc.relation.ispartof | Proceedings of the 54th Hawaii International Conference on System Sciences | |
dc.rights | Attribution-NonCommercial-NoDerivatives 4.0 International | |
dc.rights.uri | https://creativecommons.org/licenses/by-nc-nd/4.0/ | |
dc.subject | Cyber Deception and Cyber Psychology for Defense | |
dc.subject | automation | |
dc.subject | cognitive task analysis | |
dc.subject | cyber security | |
dc.subject | expertise | |
dc.subject | incident response | |
dc.title | Identifying Expertise Gaps in Cyber Incident Response: Cyber Defender Needs vs. Technological Development | |
prism.startingpage | 1978 |
Files
Original bundle
1 - 1 of 1
No Thumbnail Available
- Name:
- 0195.pdf
- Size:
- 877.25 KB
- Format:
- Adobe Portable Document Format
- Description: