Full text

Turn on search term navigation

© 2023 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/). Notwithstanding the ProQuest Terms and Conditions, you may use this content in accordance with the terms of the License.

Abstract

Small and medium enterprises are significantly hampered by cyber-threats as they have inherently limited skills and financial capacities to anticipate, prevent, and handle security incidents. The EU-funded PALANTIR project aims at facilitating the outsourcing of the security supervision to external providers to relieve SMEs/MEs from this burden. However, good practices for the operation of SME/ME assets involve avoiding their exposure to external parties, which requires a tightly defined and timely enforced security policy when resources span across the cloud continuum and need interactions. This paper proposes an innovative architecture extending Network Function Virtualisation to externalise and automate threat mitigation and remediation in cloud, edge, and on-premises environments. Our contributions include an ontology for the decision-making process, a Fault-and-Breach-Management-based remediation policy model, a framework conducting remediation actions, and a set of deployment models adapted to the constraints of cloud, edge, and on-premises environment(s). Finally, we also detail an implementation prototype of the framework serving as evaluation material.

Details

Title
PALANTIR: An NFV-Based Security-as-a-Service Approach for Automating Threat Mitigation
Author
Compastié, Maxime 1   VIAFID ORCID Logo  ; Antonio López Martínez 2   VIAFID ORCID Logo  ; Fernández, Carolina 3   VIAFID ORCID Logo  ; Manuel Gil Pérez 2   VIAFID ORCID Logo  ; Tsarsitalidis, Stylianos 4   VIAFID ORCID Logo  ; Xylouris, George 5   VIAFID ORCID Logo  ; Mlakar, Izidor 6   VIAFID ORCID Logo  ; Michail Alexandros Kourtis 5   VIAFID ORCID Logo  ; Valentino Šafran 7   VIAFID ORCID Logo 

 Cybersecurity Department, i2CAT Foundation, 08034 Barcelona, Spain 
 Department of Information and Communication Engineering, University of Murcia, 30100 Murcia, Spain 
 Cybersecurity Department, i2CAT Foundation, 08034 Barcelona, Spain; Department of Information and Communication Technologies, Universitat Pompeu Fabra, 08018 Barcelona, Spain 
 UBITECH Ubiquitous Solutions, 15231 Athens, Greece 
 ORION Innovations PC, 11744 Athens, Greece 
 Faculty of Electrical Engineering and Computer Science, University of Maribor, 2000 Maribor, Slovenia; Sfera IT d.o.o., 2000 Maribor, Slovenia 
 Faculty of Electrical Engineering and Computer Science, University of Maribor, 2000 Maribor, Slovenia 
First page
1658
Publication year
2023
Publication date
2023
Publisher
MDPI AG
e-ISSN
14248220
Source type
Scholarly Journal
Language of publication
English
ProQuest document ID
2774973292
Copyright
© 2023 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/). Notwithstanding the ProQuest Terms and Conditions, you may use this content in accordance with the terms of the License.