The paper presents a method for assessing the security level of an IT system based on the analysis of system event registers called logs. For the purposes of the proposed method categories of recorded events are identified and then - based on the analysis of logs from a specific past period - the values of their selected characteristics are calculated, which may be helpful in assessing the security of the IT system for the assumed levels of security. The presented considerations are illustrated with a simple numerical example.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Use of the System Event Register to Assess the Security Level of The IT System

  • Kazimierz Worwa

摘要

The paper presents a method for assessing the security level of an IT system based on the analysis of system event registers called logs. For the purposes of the proposed method categories of recorded events are identified and then - based on the analysis of logs from a specific past period - the values of their selected characteristics are calculated, which may be helpful in assessing the security of the IT system for the assumed levels of security. The presented considerations are illustrated with a simple numerical example.