"Network Security Intelligence" Educational and Research Center

The paper presents a recent experience (since 2016) in establishing and running the “Network Security Intelligence” educational and research center (NSIC) in the framework of the new NRNU MEPhI’s Institute of Cyber Intelligence Systems (ICIS). The created center is designed to provide training and research on effective network security management based on intelligent approaches and applications, the use of Big Data technologies for processing information security information, the study of the compatibility between different network protection tools, as well as the evaluation of network security. The educational NSIC’s basis currently consists of two laboratories with Next-Generation Firewall (NGFW) and Data Loss Prevention (DLP) systems at their cores respectively. Here we discuss the use of the first one. The main areas of further work in expanding NSIC’s operation for training and research conclude the paper.

[1]  Nadhem J. AlFardan,et al.  Security Operations Center: Building, Operating, and Maintaining your SOC , 2015 .

[2]  Natalia G. Miloslavskaya,et al.  Application of Big Data, Fast Data, and Data Lake Concepts to Information Security Issues , 2016, 2016 IEEE 4th International Conference on Future Internet of Things and Cloud Workshops (FiCloudW).

[3]  Ronald C. Dodge,et al.  Using Virtualization to Create and Deploy Computer Security Lab Exercises , 2008, SEC.

[4]  Chris Sanders,et al.  Applied Network Security Monitoring: Collection, Detection, and Analysis , 2013 .

[5]  Natalia Miloslavskaia,et al.  Network Security Scientific and Research Laboratory , 2003, World Conference on Information Security Education.

[6]  Natalia Miloslavskaya,et al.  Practical studying of Wi-Fi network vulnerabilities , 2016, 2016 Third International Conference on Digital Information Processing, Data Mining, and Wireless Communications (DIPDMWC).

[7]  Natalia G. Miloslavskaya,et al.  Information Security Theory for the Future Internet , 2015, 2015 3rd International Conference on Future Internet of Things and Cloud.

[8]  Gordon Davies,et al.  The Virtual Campus , 1998, IFIP — The International Federation for Information Processing.

[9]  Dimitris Gritzalis,et al.  Action learning in practice: Pilot delivery of an INFOSEC University laboratory course , 2001 .

[10]  Natalia G. Miloslavskaya Security Operations Centers for Information Security Incident Management , 2016, 2016 IEEE 4th International Conference on Future Internet of Things and Cloud (FiCloud).

[11]  Richard Bejtlich,et al.  The Practice of Network Security Monitoring , 2013 .

[12]  Andrew E O Obwanda An information security risk management gap analysis tool based on ISO/IEC 27005:2011 compliance for SMEs in Kenya , 2018 .