Dario Simone Leone
Remediation procedures and automated cybersecurity incident response.
Rel. Cataldo Basile, Francesco Settanni. Politecnico di Torino, Corso di laurea magistrale in Ingegneria Informatica (Computer Engineering), 2025
|
Preview |
PDF (Tesi_di_laurea)
- Tesi
Licenza: Creative Commons Attribution Non-commercial No Derivatives. Download (1MB) | Preview |
Abstract
Digital transformation in recent years has fostered the adoption of interconnected technologies such as scalable cloud services, the pervasive internet of things, and artificial intelligence, altering the approach organizations take to their routine operations. While these advancements bring benefits, they also expand the attack surface, exposing organizations to more frequent and sophisticated cybersecurity threats. Attackers leverage emerging technologies to orchestrate targeted campaigns, highlighting the need for automated and standardized Incident Response processes. Despite efforts to improve automation, the diversity of attack types and environments spanning traditional information technology, cloud platforms, and industrial control system, makes one-size-fits-all solutions impractical. There is thus a growing need to abstract response procedures from specific technologies and encode them for interoperability without constant manual adaptation.
Standardized formats for representing incident response actions facilitate automation, integration, and transformation of heterogeneous procedures into homogeneous playbooks
Tipo di pubblicazione
URI
![]() |
Modifica (riservato agli operatori) |
