| | September 20188CIOReviewOne would be hard pressed to find two enterprise services that require more data than Cybersecurity and Data Analytics. According to informatica.com, "Data analytics is the pursuit of extracting meaning from raw data using specialized computer systems." Data analytics doesn't exist without access to data, which it turns into information. Without data, cybersecurity services such as vulnerability scanning, threat hunting and incident response are impossible. This is partially the reason why IoT (Internet of Things) is such a challenge for many organizations often there is a lack of data about these devices resulting in an inability to secure them. Data architecture is what allows data to be collected, transformed and eventually consumed as actionable information.1. While the Coin is the Same, How You Spend It Might Be DifferentWhile data is critical for both Cybersecurity and Data Analytics how each discipline uses it is potentially different, depending on scope and maturity of the service. When cybersecurity tools, such as SIEMs (Security Information and Event Management) are set up, attention is given to what data sources are ingested for dash boarding, querying and reporting. Part of the reason is to avoid creating too much `white noise' when reviewing operations or investigating suspicious behavior. White noise is essentially false positives, leading down digital rabbit holes.With data analytics, the more diverse the data sources, the `better' the analysis. The thought is an organization wants to draw correlations between activities where no Lester GodseyDATA ARCHITECTURE CONSIDERATIONS INVOLVING CYBERSECURITY AND DATA ANALYTICSBy Lester Godsey, CIO & CSO, City of Mesa
<
Page 7 |
Page 9 >