

A Study on the Big Data Log Analysis for Security



Recently, cyber-attack has become the serious national treat such as shut down industry control system, and an act of war. Therefore, the issue is suggested about the necessity of Enterprise Security Management (ESM) that is for integrated management of network system such as firewall, IPS, VPN, and etc. However, current ESM has the limit of blocking only cyber-attack from outside due to using the networking attack detection method that monitoring the traffic inflows from outside to inside. Therefore, this study suggests the new security log system using big data that enhances intelligence of security by analyzing the relationship between security and data events created from network, system, application service of main IT infrastructure. We assume to apply the distribution-based saving/processing technology through the security log system using big data which is suggested in the study. Moreover a ripple effect of enhanced customer service satisfaction due to the possibility of inflow and infection (spread) of malignant code in-house and real time monitoring.


 1. Introduction
 2. Related Works
 3. Architecture of Security Log System Using Big Data
  3.1. Intelligent Information Analyzing Platform
  3.2. Suggesting the Algorithm of Collecting Massive Data
  3.3. Data Saving
  3.4. Data Analyzing System
 4. Conclusion


  • Kyung-Sik Jeon Department of IT Policy and Management, Graduate School of Soongsil University, Seoul, 156-743, Korea
  • Se-Jeong Park Graduate School of Software, Soongsil University, Seoul, 156-743, Korea
  • Sam-Hyun Chun Department of Law, Soongsil University, Seoul, 156-743, Korea
  • Jong-Bae Kim Graduate School of Software, Soongsil University, Seoul, 156-743, Korea


자료제공 : 네이버학술정보

    함께 이용한 논문

      ※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

      0개의 논문이 장바구니에 담겼습니다.