A Data Modelling Framework to Unify Cyber Security Knowledge
Talk Synopsis
Cyber security companies collect massive amounts of heterogenous data coming from a huge number of sources. These describe hundreds of different data types, such as vulnerabilities, observables, incidents, and malwares. While this data is highly complex (with many types of relations, type hierarchies, and rules), its structure doesn’t significantly change between organisations. However, without a publicly available data model, organisations end up modelling the same data in different ways: in other words, reinventing the wheel, and wasting their resources. This modelling complexity makes scaling cyber security applications extremely difficult.
That’s why efforts are underway to provide ready-made solutions for typical cyber security use cases which provide the flexibility to expand for specific requirement of individual setups. The combination of those efforts have created a lot of inter-related knowledge silos (e.g. CVE, CAPEC, CWE, CVSS, Cocoa, MITRE, VERIS, STIX, MAEC). To unify these silos, various ontologies have been proposed by researchers, with different levels of granularity – from specific use cases like defence exercises, to more comprehensive cases like the UCO project.
During this talk, you’ll learn about the OmnibusCyber Project, an open-source, ready-made solution that aggregates cyber security knowledge silos, based on TypeDB. TypeDB’s framework offers the expressivity, safety, and inference properties required to implement a knowledge graph without the complexity associated with the OWL/RDF semantic frameworks.
Speaker: Dr Paolo di Prodi
Dr. Paolo Di Prodi is currently a Senior Data Scientist for Fortinet. He has a research background in multi agent machine learning and robotics. Previously, he has worked as a data scientist for Microsoft and Context IS. His main interest is data modeling and machine learning for threat intelligence analysis and sharing. He is also a contributor to various MITRE projects and collaborates to the Cyber Threat Alliance via Fortinet.
Contributor: Brett Forbes
Brett Forbes is a seasoned startup specialist, with 3 decades of experience in high-tech, IT- and science-based projects.
– Join the conversation on Discord: https://vaticle.com/discord
– Find us on GitHub: https://github.com/vaticle/typedb
– Learn to use TypeDB: https://docs.vaticle.com/docs/general…
– Review the presentation slides: https://www.slideshare.net/Vaticle/unifying-space-mission-knowledge-with-nlp-knowledge-graph
Views : 105
cyber security