BIFROST: A STATISTICAL ANALYSIS FRAMEWORK FOR DETECTING INSIDER THREAT ACTIVITIES ON CYBER SYSTEMS

dc.contributor.advisorShaffer, Alan B.
dc.contributor.advisorSingh, Gurminder
dc.contributor.authorFindley, Scott E.
dc.contributor.departmentComputer Science (CS)
dc.date.accessioned2019-08-08T23:50:15Z
dc.date.available2019-08-08T23:50:15Z
dc.date.issued2019-06
dc.description.abstractThe purpose of this research is to investigate, design and implement a statistical analysis-based insider threat detection product deployable to resource-disadvantaged systems and provide organizations with a method for baselining the network profiles and host activities unique to their operational environments. Our system design seeks to alert the system and its operators to invest greater monitoring resources against hosts who exhibit threat characteristics of insider activity and prevent such activities from inflicting harm on the system and/or causing an information-loss event for the organization. This system provides an initial starting point for future work, implementing one means of detecting insider threat activities; this implementation results in best- and worst-case detection rates of ~74% and ~68.2%, respectively, against our test data. We believe our framework provides a reasonable starting point for future work and improvement.en_US
dc.description.distributionstatementApproved for public release; distribution is unlimited.
dc.description.serviceLieutenant, United States Navyen_US
dc.description.urihttp://archive.org/details/bifrostastatisti1094562840
dc.identifier.thesisid31980
dc.identifier.urihttps://hdl.handle.net/10945/62840
dc.publisherMonterey, CA; Naval Postgraduate Schoolen_US
dc.rightsThis publication is a work of the U.S. Government as defined in Title 17, United States Code, Section 101. Copyright protection is not available for this work in the United States.en_US
dc.subject.authorinsider threaten_US
dc.subject.authorbaseline developmenten_US
dc.subject.authorcyber-securityen_US
dc.subject.authorinformation securityen_US
dc.titleBIFROST: A STATISTICAL ANALYSIS FRAMEWORK FOR DETECTING INSIDER THREAT ACTIVITIES ON CYBER SYSTEMSen_US
dc.typeThesisen_US
dspace.entity.typePublication
etd.thesisdegree.disciplineComputer Scienceen_US
etd.thesisdegree.grantorNaval Postgraduate Schoolen_US
etd.thesisdegree.levelMastersen_US
etd.thesisdegree.nameMaster of Science in Computer Scienceen_US
Files
Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
19Jun_Findley_Scott.pdf
Size:
596.64 KB
Format:
Adobe Portable Document Format
Collections