Project ID: 376
Author: Irvan Hendrik
Project Title: Combining Host and Network-based Intrusion Detection System to Mitigate Insider Threat
Semester: 3 2011
Committe Chair: Dr. Ajay Katangur
Committee Member 1: Dr. Dulal C. Kar
Committee Member 2: Dr. Amhed Mahdy
Project Description: Insider threat has been a serious problem to many companies whether they realize it or not. The threat can be posed by a legitimate user and/or someone that has relationship to the user. Insider threats can be prevented by following some steps, such as background checks. Technical actions can also help in preventing the threat, such as regular monitoring of system activity and security training. However, prevention is not enough. As long as someone is working for the company, that company will always facing threats from insiders. Therefore, there is a need for an independent detection system to detect insider threats. The purpose of this thesis is to develop a framework to combine host and network based activities for the development of a system to detect insider threats.
Project URL:   376.pdf