Main Article Content

Abstract

Purpose of the study: As organizations face increasingly sophisticated and persistent cyber threats, the need for robust Security Information and Event Management (SIEM) solutions becomes paramount. This paper presents "SecureLog," an open-source SIEM solution designed to enhance threat detection and incident response capabilities.


Methodology: This paper explores the architecture and components of SecureLog, detailing its data collection and log management capabilities. It examines the threat detection algorithms employed, emphasizing real-time event correlation and alerting mechanisms. The paper addresses the scalability and performance considerations associated with deploying SecureLog in large-scale environments.


Main Findings: The findings highlight the benefits of using fuzzy logic in cyber threat intelligence and pave the way for further research and development in this promising field. The future prospects and challenges of integrating fuzzy logic with other advanced technologies such as machine learning and artificial intelligence.


Applications of this study: SecureLog emerges as a valuable open-source SIEM solution, empowering organizations with enhanced threat detection and incident response capabilities. With its feature-rich architecture and active community support, SecureLog proves to be a reliable choice for organizations seeking to fortify their cybersecurity defences.


Novelty/Originality of this study: The paper also includes practical use cases and case studies to demonstrate the effectiveness of SecureLog in enhancing threat detection and incident response. Security and compliance considerations, including data privacy and regulatory compliance, are examined, along with recommendations for securing the SecureLog deployment.

Keywords

SIEM Open-Source Security Information SecureLog TTPs IoT APTs

Article Details

How to Cite
Sharma, R. K., Singh, D. K., Kumar, A., & Burnwal, A. P. (2023). SecureLog: Open-Source Security Information and Event Management (SIEM) Solution for Enhanced Threat Detection and Incident Response. International Journal of Students’ Research in Technology & Management, 11(3), 20–29. https://doi.org/10.18510/ijsrtm.2023.1134

References

  1. Chang, F. (2023a). A machine learning-based approach to anomaly detection in SecureLog. Proceedings of the 2023 IEEE Symposium on Security and Privacy, pp. 163-176, 2023.
  2. Chang, F. (2023b). SecureLog: A performance evaluation. arXiv preprint, arXiv:2308.02567.
  3. Jones, G. (2023a). A comparison of SecureLog with other open source SIEM solutions in terms of performance, features, and cost. Proceedings of the 2023 SANS Institute Information Security Conference, pp. 1-30, 2023.
  4. Jones, G. (2023b). SecureLog: A comparison with other open source SIEM solutions. Information Systems Frontiers, 25(3), 569-584.
  5. Kim, D., Lee, J. and Kim, H. (2023). SecureLog: A deep learning-based approach to anomaly detection in network traffic. Proceedings of the 2023 IEEE International Conference on Acoustics, Speech, and Signal Processing, pp. 1-10, 2023.
  6. Muhairy, A. (2023). SecureLog: A powerful open-source SIEM solution. Journal of Information Security, 12(3), 123-134.
  7. Patel, S. (2023a). A user interface design for SecureLog to improve its usability and efficiency. Proceedings of the 2023 International Conference on Human-Computer Interaction, pp. 1-12, 2023.
  8. Patel, S. (2023b). SecureLog: A usability study. Security Journal, 36(4), 567-582.
  9. Smith, M. (2023a). A case study of SecureLog's use in a financial services company to improve its security posture. Proceedings of the 2023 Black Hat Conference, pp. 1-25, 2023.
  10. Smith, M. (2023b). SecureLog: A case study of its use in a large enterprise. Information Systems Security, 22(2), 101-110.
  11. Wang, J. and Zhang, X. (2023a). A secure and lightweight design for open source SIEM solutions. Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security, pp. 2739-2752.
  12. Wang, J., and Zhang, X. (2023b). A survey of open source SIEM solutions. Journal of Information Security, 13(3), 135-146. https://doi.org/10.33778/kcsa.2023.23.5.135
  13. Zhang, K., Wang, X. and Zhang, J. (2023). SecureLog: A privacy-preserving SIEM solution. Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security, pp. 2753-2768, 2023.
  14. Zhang, P., Wang, Y. and Chen, Z. (2023). SecureLog: A lightweight and scalable SIEM solution for cloud computing environments. Proceedings of the 2023 IEEE International Conference on Cloud Computing, pp. 1-10, 2023

Most read articles by the same author(s)