Please use this identifier to cite or link to this item: http://hdl.handle.net/10609/117847
Title: Despliegue de Zeek IDS y su posterior explotación para el análisis de actividades sospechosas en la red
Author: Rodríguez Vílchez, Juan Francisco
Director: Garcia-Font, Victor  
Tutor: Guaita Pérez, Borja
Abstract: Currently, most corporations offer services that rely on internet-based websites and applications. This situation causes that the privacity and security risks increase considerably. Cyber attacks have increased being available to people with limited knowledge. What was previously done for fun, recognition or desire to learn, has become in one of the businesses that move more money. To solve these risks, companies use protection systems that generate huge volumen of data, being very difficult to analyze it quickly and filter it in actionable alerts. The project aims to alleviate this situation by implementing a system consisting of an Instruction Detection System (IDS) integrated in a Security Information and Event Management (SIEM) that provides an exhaustive analysis of the organization¿s network, monitoring traffic and detecting posible malicious events. By using this system, security teams will have an effective method to automate processes and centralize security management. In addition, data standardization is perfomed, transforming the data from different sources into a common format used to run análisis and correlation, reducing the team's workload. This project will provide a degree of preventive security against any suspicious activity, making the security team receive early alerts and be able to act quickly enough to mitigate the problem and minimize the impact.
Keywords: IDS
SIEM
computer security
Document type: info:eu-repo/semantics/masterThesis
Issue Date: 2-Jun-2020
Publication license: http://creativecommons.org/licenses/by-nc-sa/3.0/es/  
Appears in Collections:Trabajos finales de carrera, trabajos de investigación, etc.

Files in This Item:
File Description SizeFormat 
jfrodriguezvilchezTFM0620memoria.pdfMemoria del TFM3,66 MBAdobe PDFThumbnail
View/Open