A prototype for threat detection on big data using behavioural analytics for government ministries

dc.contributor.authorWambui, Macharia Terry
dc.date.accessioned2016-07-18T08:38:29Z
dc.date.available2016-07-18T08:38:29Z
dc.date.issued2015
dc.descriptionSubmitted in partial fulfillment of the requirements for the Degree of Masters of Science in Information Technologyen_US
dc.description.abstractWhile no one would dispute the capability of big data to enlighten enterprise operations, the present methods of mining and managing big data are still evolving and are posing serious security and privacy challenges. Currently the greatest challenge for most Information Technology security practioners is that they’re unable to detect unknown insider threats on company valuable data in real time. This research sought to identify the different types of data as well as insider threats associated with the different types of data. Further for detection of insider threat to be successful there is need to separate legitimate behaviour from malicious behaviour with the use of behavioural analytics and machine learning. The research further sought to review the different approaches to network anomaly detection and build on their shortcomings. The shortcomings/loopholes formed the basis for the design of the prototype. From the results of the online survey carried out among security administrators it was determined that non-technical users were the likely offenders and hence caused the greatest risk to company’s valuable data. Further technical approaches were found to be the most effective techniques in mitigating insider threats. Detection of insider threat can’t be achieved with only one technique; a combination of techniques should be put into perspective if insider threat has to be successfully mitigated. Sound organizational procedures as well as policies that include controls are crucial to support the implementation of a tool that will detect insider threats in real time.en_US
dc.identifier.urihttp://hdl.handle.net/11071/4623
dc.language.isoenen_US
dc.publisherStrathmore Universityen_US
dc.subjectPrototypeen_US
dc.subjectThreat Detectionen_US
dc.subjectBig dataen_US
dc.subjectBehavioural Analyticsen_US
dc.subjectGovernment Ministriesen_US
dc.subjectICTen_US
dc.subjectsecurityen_US
dc.titleA prototype for threat detection on big data using behavioural analytics for government ministriesen_US
dc.typeThesisen_US
Files
Collections