New system boosts cyber defense analysts' efficiency in detecting cyber attacks.
Cyber defense analysts are overwhelmed by a huge amount of network data, including false alerts, when trying to detect and respond to cyber attacks. They often need to quickly filter out known malicious events from this data. A new system has been developed that uses the past experiences of senior analysts to help train junior analysts in this data triage process. By automatically retrieving similar past cases, junior analysts can learn from the expertise of their more experienced colleagues. This approach aims to improve the efficiency and accuracy of data triage operations in Security Operations Centers.