Intelligent system for automation of security audits (SIAAS)

Detalhes bibliográficos
Autor(a) principal: Seara, J.
Data de Publicação: 2024
Outros Autores: Serrão, C.
Tipo de documento: Artigo
Idioma: eng
Título da fonte: Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
Texto Completo: http://hdl.handle.net/10071/30426
Resumo: Events related to cybersecurity failures have a high and growing financial, operational, and reputational impact, on organizations around the world. At the same time, there is a shortage of cybersecurity professionals. In addition, the specialization of professionals with the necessary skills in the area of cybersecurity is expensive and time-consuming. Taking these facts into consideration, this research has focused on the automation of cybersecurity processes, specifically those related to continuous vulnerability detection. To address this problem, a cybersecurity vulnerability scanner that is free to the community and requires no pre-expertise on the part of the operator, was developed. The artifact was tested by companies in the IT business, by systems engineers, most without cybersecurity background. The results demonstrated that the artifact was easy to install and that the reported results can be used by the operator in the context of an automatic and proactive securitization of the systems involved.
id RCAP_4751167389080b9fdc380436eaae2528
oai_identifier_str oai:repositorio.iscte-iul.pt:10071/30426
network_acronym_str RCAP
network_name_str Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
repository_id_str 7160
spelling Intelligent system for automation of security audits (SIAAS)CybersecuritySecurity auditingVulnerability scannerFree open-source software (FOSS)Events related to cybersecurity failures have a high and growing financial, operational, and reputational impact, on organizations around the world. At the same time, there is a shortage of cybersecurity professionals. In addition, the specialization of professionals with the necessary skills in the area of cybersecurity is expensive and time-consuming. Taking these facts into consideration, this research has focused on the automation of cybersecurity processes, specifically those related to continuous vulnerability detection. To address this problem, a cybersecurity vulnerability scanner that is free to the community and requires no pre-expertise on the part of the operator, was developed. The artifact was tested by companies in the IT business, by systems engineers, most without cybersecurity background. The results demonstrated that the artifact was easy to install and that the reported results can be used by the operator in the context of an automatic and proactive securitization of the systems involved.European Alliance for Innovation2024-01-17T10:36:06Z2024-01-01T00:00:00Z20242024-01-17T10:34:02Zinfo:eu-repo/semantics/publishedVersioninfo:eu-repo/semantics/articleapplication/pdfhttp://hdl.handle.net/10071/30426eng2032-940710.4108/eetsis.3564Seara, J.Serrão, C.info:eu-repo/semantics/openAccessreponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãoinstacron:RCAAP2024-01-21T01:19:51Zoai:repositorio.iscte-iul.pt:10071/30426Portal AgregadorONGhttps://www.rcaap.pt/oai/openaireopendoar:71602024-03-20T01:52:37.273084Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informaçãofalse
dc.title.none.fl_str_mv Intelligent system for automation of security audits (SIAAS)
title Intelligent system for automation of security audits (SIAAS)
spellingShingle Intelligent system for automation of security audits (SIAAS)
Seara, J.
Cybersecurity
Security auditing
Vulnerability scanner
Free open-source software (FOSS)
title_short Intelligent system for automation of security audits (SIAAS)
title_full Intelligent system for automation of security audits (SIAAS)
title_fullStr Intelligent system for automation of security audits (SIAAS)
title_full_unstemmed Intelligent system for automation of security audits (SIAAS)
title_sort Intelligent system for automation of security audits (SIAAS)
author Seara, J.
author_facet Seara, J.
Serrão, C.
author_role author
author2 Serrão, C.
author2_role author
dc.contributor.author.fl_str_mv Seara, J.
Serrão, C.
dc.subject.por.fl_str_mv Cybersecurity
Security auditing
Vulnerability scanner
Free open-source software (FOSS)
topic Cybersecurity
Security auditing
Vulnerability scanner
Free open-source software (FOSS)
description Events related to cybersecurity failures have a high and growing financial, operational, and reputational impact, on organizations around the world. At the same time, there is a shortage of cybersecurity professionals. In addition, the specialization of professionals with the necessary skills in the area of cybersecurity is expensive and time-consuming. Taking these facts into consideration, this research has focused on the automation of cybersecurity processes, specifically those related to continuous vulnerability detection. To address this problem, a cybersecurity vulnerability scanner that is free to the community and requires no pre-expertise on the part of the operator, was developed. The artifact was tested by companies in the IT business, by systems engineers, most without cybersecurity background. The results demonstrated that the artifact was easy to install and that the reported results can be used by the operator in the context of an automatic and proactive securitization of the systems involved.
publishDate 2024
dc.date.none.fl_str_mv 2024-01-17T10:36:06Z
2024-01-01T00:00:00Z
2024
2024-01-17T10:34:02Z
dc.type.status.fl_str_mv info:eu-repo/semantics/publishedVersion
dc.type.driver.fl_str_mv info:eu-repo/semantics/article
format article
status_str publishedVersion
dc.identifier.uri.fl_str_mv http://hdl.handle.net/10071/30426
url http://hdl.handle.net/10071/30426
dc.language.iso.fl_str_mv eng
language eng
dc.relation.none.fl_str_mv 2032-9407
10.4108/eetsis.3564
dc.rights.driver.fl_str_mv info:eu-repo/semantics/openAccess
eu_rights_str_mv openAccess
dc.format.none.fl_str_mv application/pdf
dc.publisher.none.fl_str_mv European Alliance for Innovation
publisher.none.fl_str_mv European Alliance for Innovation
dc.source.none.fl_str_mv reponame:Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
instname:Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
instacron:RCAAP
instname_str Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
instacron_str RCAAP
institution RCAAP
reponame_str Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
collection Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos)
repository.name.fl_str_mv Repositório Científico de Acesso Aberto de Portugal (Repositórios Cientìficos) - Agência para a Sociedade do Conhecimento (UMIC) - FCT - Sociedade da Informação
repository.mail.fl_str_mv
_version_ 1799137016746606592