A Unified Cybersecurity Framework for Modeling Enterprise Threats and Defenses
In this project, we are trying to unify existing cybersecurity and threat frameworks for speaking a common language as well as better understanding their relationships for the enterprise asset risk management. We have studied cybersecurity frameworks such as NIST, Kill Chain, ATT&CK, FireEye APT Attack Life Cycle, ODNI Common CTF, NTCTF v2, DoDCAR/.govCar, and Diamond model.
Remarks:
I am working with another PhD student Eric Ong who is the lead on this project. Dr. Xu is advising us on the project with his expertise in cybersecurity research and validating research questions. The project is still ongoing.