Skip to main content

Comparative Analysis of Security Operations Centre Architectures; Proposals and Architectural Considerations for Frameworks and Operating Models

  • Conference paper
  • First Online:
Book cover Innovative Security Solutions for Information Technology and Communications (SECITC 2016)

Part of the book series: Lecture Notes in Computer Science ((LNSC,volume 10006))

Included in the following conference series:

Abstract

Few initiatives tried to define an architectural framework for an Information Security Operations Centre (SOC) at this point. As it is a topic that encompasses the three dimensions of technology, processes and people, the documentation and resources available are usually treating only one or two of these three dimensions. This article tries to treat the Security Operations Centre in the complexity that it demands, looking at all the stated three dimensions and trying to propose a few architectural considerations regarding frameworks and operating models that can be used when building a variably sized SOC, with its applicability throughout organisations in different fields of interest.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. Killcrece, G., Kossakowski, K.-P., Ruefle, R., Zajicek, M.: State of the Practice of Computer Security Incident Response Teams (2003)

    Google Scholar 

  2. Killcrece, G., Kossakowski, K.-P., Ruegle, R., Zajicek, M.: Organizational Models for Computer Security Incident Response Teams (2003)

    Google Scholar 

  3. West-Brown, M.J., Stikvoort, D., Kossakowski, K.-P., Killcrece, G., Ruefle, R., Zajicekm, M.: Handbook for Computer Security Incident Response Teams (CSIRTs) (2003)

    Google Scholar 

  4. Zimmerman, C.: Ten Strategies of a World-Class Cybersecurity Operations Centre (2014)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Sabina Georgiana Radu .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2016 Springer International Publishing AG

About this paper

Cite this paper

Radu, S.G. (2016). Comparative Analysis of Security Operations Centre Architectures; Proposals and Architectural Considerations for Frameworks and Operating Models. In: Bica, I., Reyhanitabar, R. (eds) Innovative Security Solutions for Information Technology and Communications. SECITC 2016. Lecture Notes in Computer Science(), vol 10006. Springer, Cham. https://doi.org/10.1007/978-3-319-47238-6_18

Download citation

  • DOI: https://doi.org/10.1007/978-3-319-47238-6_18

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-319-47237-9

  • Online ISBN: 978-3-319-47238-6

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics