What can Big Data Security learn from the AV industry? (sponsor presentation)

Stephen Cobb ESET

The anti-virus industry has several decades of experience sharing threat data between competing vendors, private enterprises, public institutions, and non-governmental organizations. In this paper we examine the history of this pioneering threat data sharing for lessons that can inform the evolution of Big Data Security.

Big Data Security is this year's hot information security concept, a key element of which is using shared threat data, along with internal data, to detect and mitigate threats to information systems. Big Data Security is defined as more than either SIEM or NBA, both of which are characterized as limited visibility solutions. The goal of Big Data Security is full visibility into all aspects of all the data, all the time, so that near real-time analysis of OSI layers 2 through 7, plus threat data feeds from beyond the enterprise, will produce faster, better threat detection and response.

This goal cannot be achieved without timely access to shared threat data, ranging from malicious code signatures and malicious URLs to whitelists, incident profiles and more. We will determine how the anti-virus industry's experiences may inform the development of Big Data Security in the areas of standards, legal constraints, privacy concerns, logistical challenges, and more.

VB2013 takes place 2-4 October 2013 in Berlin, Germany.

The full programme for VB2013, including abstracts for each paper, can be viewed here.

Click here for more details about the conference or register online.

 del.icio.us  digg this! digg this

Quick Links

Poll
Should software vendors extend support for their products on Windows XP beyond the end-of-life of the operating system?
Yes - it keeps their users secure
No - it encourages users to continue to use a less secure OS
I don't know
Leave a comment
View 23 comments

AusCert2014

VB100 certification
VB100 For the first time in living memory, this test saw a clean sweep of certification passes, with all products reaching the required standard for a VB100 badge, and most also doing well in terms of stability.
See full results.

Virus Bulletin currently has 231,300 registered users.