International Workshop on Next Generation Security Operations Centers

NG-SOC 2021


Computer Security & Cryptography Security & Trust & Testing



Organisations in Europe face the difficult task of detecting and responding to increasing numbers of cyber-attacks and threats, given that their own ICT infrastructures are complex, constantly changing (e.g. by the introduction of new technologies) and there is a shortage of qualified cybersecurity experts. There is a great need to drastically reduce the time to detect and respond to cyber-attacks. A key means for organizations to stay ahead of the threat is through the establishment of a Security Operations Center (SOC). The primary purpose of a SOC is to monitor, assess and defend the information assets of an enterprise, both on a technical and organizational level.
The aim of this workshop is to create a forum for researchers and practitioners to discuss the challenges associated with SOC operations and focus on research contributions that can be applied to address these challenges. Through cooperation among H2020 European projects, the workshop intends to provide a more comprehensive overview of the promising research-based solutions that enable timely response to emerging threats and support different aspects of the security analysis and recovery process.
The workshop is jointly organized by two H2020 projects: SOCCRATES (https://www.soccrates.eu/) and SAPPAN (https://sappan-project.eu/).
The NG-SOC Workshop is organized in conjunction with the International Conference on Availability, Reliability and Security (ARES 2021) at TU Wien, Vienna, Austria on August 17 – August 20, 2021 (https://www.ares-conference.eu/)
=================================================
Topics of interest include, but are not limited to:
=================================================
- Collaborative Incident Response and Recovery
- Machine Learning for Security and Privacy
- Intrusion Detection
- Network Security
- Standardization and Sharing of Cybersecurity Knowledge
- Endpoint Security
- Privacy Aspects of Sharing in Cybersecurity
- Cyber Threat Intelligence Utilization
- Situation Awareness and Decision Support Tools for SOC
- Novel Visualization Tools and Approaches for SOC
- Security of Machine Learning
- Attacks against Deep Learning (e.g. Adversarial Examples)
- Malware Identification and Analysis
- Vulnerability Discovery
- Digital Forensics and Attack Attribution
- Natural Language Processing (NLP) for Security
- Threat Trend Modelling and Prediction
- Attack and Defence Modelling
- Host Behaviour Profiling
- User Behaviour Analytics (UBA)
- Advanced Persistent Threat Detection and Analysis
- Security Event Fusion, Correlation and Severity Analysis
=================================================
Submission Guidelines
=================================================
The submission guidelines are the same as for ARES conference and can be found here: https://www.ares-conference.eu/conference/submission/
ARES 2021 (including workshops) will be published by the International Conference Proceedings Series published by ACM (ACM ICPS). Authors of selected papers that are accepted by and presented at the ARES Conference (including workshops) will be invited to submit an extended version to special issues of international journals.
==================================================
Workshop Chairs
==================================================
Irina Chiscop, TNO, Netherlands
Tomas Jirsik, Masaryk University, Brno, Czech Republic
Avikarsha Mandal, Fraunhofer FIT, Aachen, Germany
Ewa Piatkowska, AIT Austrian Institute of Technology, Austria