Ανάπτυξη συνεργατικής πλατφόρμας για την κεντρική διαχείριση κυβερνοεπιθέσεων
Development of a collaborative platform for centralized incident response management

View/ Open
Keywords
Incident response ; Collaboration ; Exchange of informationAbstract
This thesis focuses on the development of a incident response platform whose main characteristics are the collaboration, the coordination and the exchange of information for incident management at national and international level, between analysts of different incident response teams. The main goal of this approach is the provision of a common operational view, which when combined with appropriate tools, will guide the experts towards the appropriate actions in order to manage and restore the incident timely, effectively and proactively. Following this it will automate the actions that the specialist must perform in order to minimize the required human intervention. The architecture of the proposed platform is presented, along with the tools that constitute its building blocks. their communication, data exchange methods, their capabilities and their specific role in the platform. Following, the platform implementation is then described in detail, along with its relative advantages and disadvantages. Finally, potential future extensions and modifications are presented, that may further enhance the effectiveness of the proposed platform against cyber-attacks that may cause devastating impact on the attacked organizations.