Abstract
In the ever-changing realm of cybersecurity, protecting digital assets requires constant awareness and rapid incident response in security operations centre (SOC), where security professionals employ cutting-edge threat fighting strategies. The battle becomes more intense in the face of ever-more complex adversaries, such as advanced and persistent malware. The riddle of malware incidents, on the other hand, provides distinct obstacles, requiring steadfast specialised competence and innovative strategies. Effective incident handling is essential for protecting organisational digital assets, given the ongoing evolution and rising sophistication of cyberattacks. This paper reviews the literature that explores the complexities of the current state of malware event-handling solutions and identifies challenges by delving into SOC operations. It provides the recommendations and guidance necessary to SOC researchers and security professionals, empowering them to tackle malware incidents and strengthen cybersecurity defences.
Original language | English |
---|---|
Title of host publication | Proceedings of the 10th International Conference on Information Systems Security and Privacy ICISSP 2024 - Volume 1 |
Pages | 162-169 |
Number of pages | 8 |
ISBN (Electronic) | 9789897586835 |
DOIs | |
Publication status | Published - 2024 |
Keywords
- incident response
- Malware
- SOC
- Security Operations Centre
- Malware Analysis