A Security Operation Centre (SOC) is a powerful and versatile infrastructure for cybersecurity due to the capabilities of monitoring and improving the security posture of an organization. While they found great diffusion in companies to defend IT/OT infrastructures, their employment in the maritime domain is still narrow but required. Nevertheless, SOC analysts working in traditional SOCs may be unprepared to operate proficiently in the maritime environment due to its context-specific features. They require specific training to fully exploit these newfound requirements. In this work, we leverage the NICE framework to outline the profile definition of a SOC operator in terms of required knowledge and skills. This profile allowed us to define the requirements of a training program tailored for maritime SOC operators. Moreover, we show how this program can be fulfilled with targeted hands-on exercises. An example exercise set in a representative scenario highlights that we are able to train the specific skills with metrics for evaluating their proficiency.

Training the Maritime Security Operations Centre Teams

Raimondi M.;Longo G.;Merlo A.;Armando A.;Russo E.
2022-01-01

Abstract

A Security Operation Centre (SOC) is a powerful and versatile infrastructure for cybersecurity due to the capabilities of monitoring and improving the security posture of an organization. While they found great diffusion in companies to defend IT/OT infrastructures, their employment in the maritime domain is still narrow but required. Nevertheless, SOC analysts working in traditional SOCs may be unprepared to operate proficiently in the maritime environment due to its context-specific features. They require specific training to fully exploit these newfound requirements. In this work, we leverage the NICE framework to outline the profile definition of a SOC operator in terms of required knowledge and skills. This profile allowed us to define the requirements of a training program tailored for maritime SOC operators. Moreover, we show how this program can be fulfilled with targeted hands-on exercises. An example exercise set in a representative scenario highlights that we are able to train the specific skills with metrics for evaluating their proficiency.
File in questo prodotto:
File Dimensione Formato  
Training_the_Maritime_Security_Operations_Centre_Teams.pdf

accesso chiuso

Descrizione: Contributo in atti di convegno
Tipologia: Documento in versione editoriale
Dimensione 1.25 MB
Formato Adobe PDF
1.25 MB Adobe PDF   Visualizza/Apri   Richiedi una copia

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11567/1098956
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
  • ???jsp.display-item.citation.isi??? 0
social impact