PALANTIR: an NFV-based security-as-a-service approach for automating threat mitigation

dc.contributor.authorCompastié, Maxime
dc.contributor.authorLópez Martínez, Antonio
dc.contributor.authorFernández, Carolina
dc.contributor.authorGil Pérez, Manuel
dc.contributor.authorTsarsitalidis, Stylianos
dc.contributor.authorXylouris, George
dc.contributor.authorMlakar, Izidor
dc.contributor.authorKourtis, Michail Alexandros
dc.contributor.authorŠafran, Valentino
dc.date.accessioned2023-04-20T06:16:11Z
dc.date.available2023-04-20T06:16:11Z
dc.date.issued2023
dc.description.abstractSmall and medium enterprises are significantly hampered by cyber-threats as they have inherently limited skills and financial capacities to anticipate, prevent, and handle security incidents. The EU-funded PALANTIR project aims at facilitating the outsourcing of the security supervision to external providers to relieve SMEs/MEs from this burden. However, good practices for the operation of SME/ME assets involve avoiding their exposure to external parties, which requires a tightly defined and timely enforced security policy when resources span across the cloud continuum and need interactions. This paper proposes an innovative architecture extending Network Function Virtualisation to externalise and automate threat mitigation and remediation in cloud, edge, and on-premises environments. Our contributions include an ontology for the decision-making process, a Fault-and-Breach-Management-based remediation policy model, a framework conducting remediation actions, and a set of deployment models adapted to the constraints of cloud, edge, and on-premises environment(s). Finally, we also detail an implementation prototype of the framework serving as evaluation material.
dc.description.sponsorshipThe work described in this article has received funding by the European Union Horizon 2020 research and innovation programme, supported under Grant Agreement no. 883335—PALANTIR (Practical Autonomous Cyberhealth for resilient SMEs and Microenterprises).
dc.format.mimetypeapplication/pdf
dc.identifier.citationCompastié M, López Martínez A, Fernández C, Gil Pérez M, Tsarsitalidis S, Xylouris G, Mlakar I, Kourtis MA, Šafran V. PALANTIR: an NFV-based security-as-a-service approach for automating threat mitigation. Sensors. 2023;23(3):1658. DOI: 10.3390/s23031658
dc.identifier.doihttp://dx.doi.org/10.3390/s23031658
dc.identifier.issn1424-8220
dc.identifier.urihttp://hdl.handle.net/10230/56514
dc.language.isoeng
dc.publisherMDPI
dc.relation.ispartofSensors. 2023;23(3):1658.
dc.relation.isreferencedbyhttps://github.com/palantir-h2020/paper-nfv-aas-threat-mitigation
dc.relation.projectIDinfo:eu-repo/grantAgreement/EC/H2020/883335
dc.rights© 2023 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https:// creativecommons.org/licenses/by/ 4.0/).
dc.rights.accessRightsinfo:eu-repo/semantics/openAccess
dc.rights.urihttp://creativecommons.org/licenses/by/4.0/
dc.subject.keywordSecurity-as-a-Service
dc.subject.keywordsecurity orchestration
dc.subject.keywordpolicy-driven management
dc.subject.keywordvirtual network functions
dc.subject.keywordfinite state machines
dc.subject.keywordconstraints programming
dc.titlePALANTIR: an NFV-based security-as-a-service approach for automating threat mitigation
dc.typeinfo:eu-repo/semantics/article
dc.type.versioninfo:eu-repo/semantics/publishedVersion

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Fernandez_Sen_Pala.pdf
Size:
954.33 KB
Format:
Adobe Portable Document Format

License

Rights