理解OLAP||APT||SA||SOC||MTTR

  • OLAP

    Online analytical processing (OLAP) is an approach to answer multi-dimensional analytical queries swiftly in computing.

    OLAP is part of the broader category of business intelligence, which also encompasses relational databases, report writing and data mining.

    Typical applications of OLAP include business reporting for sales, marketing, management reporting, business process management, budgeting and forecasting, financial reporting and similar areas.

  • MDA

    Multidimensional analysis (MDA) is a data analysis process that groups data into two categories:

    • data dimensions
    • measurements

    Two-dimensional data sets are also called panel data.

  • APT

    An Adavanced Persistent Threat (APT) is a stealthy threat actor, typically a nation state or state-sponsered group, which gains unauthorized access to a computer network and remains undetected for an extended period.

  • SA

    Situational Awareness or situation awareness (SA) is the perception of environmental elements and events with respect to time or space, the comprehension of their meaning, and the projection of their future status.

  • MTTR

    Mean time to repair (MTTR) is a basic measure of the maintainability of repairable items.

    It represents the average time required to repair a failed component or device.

  • SOC(SIEM+UEBA+SOAR+EDR+NTA)

    A Security Operations Center (SOC) is a centralized unit that deals with security issues on an organizational and technical level.

  • SIEM

    Security Information and Event Management (SIEM) is a subsetion within the field of computer security, where software products and services combine security information management (SIM) and security event management (SEM).

  • UEBA

    User and Entity Behavior Analystics(UEBA) give you more of a comprehensive way to make sure that your organization has top-notch IT security, while also helping you detect users and entities that might compromise your entire system.

  • SOAR

    SOAR(Security Orchestration, automation and response) is designed to help security teams manage and respond to endless alarms at machine speeds.

  • EDR

    Endepoint detection and response (EDR), also known as endpoint threat detection and response (ETDR), is a cyber technology that continually monitors and responds to mitigate cyber threats.

  • NTA

    Network Traffic Analysis (NTA) is the process of intercepting, recording and analyzing network traffic communication patterns in order to detect and respond to security threats.

猜你喜欢

转载自blog.csdn.net/The_Time_Runner/article/details/111710257
soc
sa
apt