Abstract

Traditionally, network and security operation center teams have worked in silos despite commonalities. The network operating center (NOC) team is to provide operationality and availability of information technology (IT) assets, while the security operation center (SOC) team is to ensure IT assets security and protect them from cyber-security attacks. The convergence in IT assets and exponential growth in cyber-security threats in the present digital-online scenario have created many challenges in maintaining network and IT assets effectively and protecting them. It is vital to break these silos and bring them under one integrated unit to effectively counter cyber-security attacks, threats, and vandalism at a reduced operational cost. Despite its necessity, the relevant literature lacks an opinion. It focuses mainly on conceptual segments instead of a holistic view of an integrated NOC and SOC architecture, limiting further innovations in the field. A systematic literature review and analysis is conducted to collate and understand current research ideas in this paper. The mapped relevant literature and our expertise have been then used to propose the implementable state-of-the-art architecture of an integrated NOC and SOC, its definition, the main building blocks and its usefulness for the organizations. Only explicit knowledge of people is considered while neglecting the tacit knowledge in automating and integrating the processes of NOC and SOC, which is the major limitation of the relevant literature. Taping people tacit knowledge is necessary for utilizing the entire caliber of the NOC and SOC integration in the future.

Highlights

  • During network inception, network operation was the only requirement for network-based organizations and not even its management [1]

  • The abbreviations ‘‘network operation center (NOC)’’ and “security operation center (SOC)” are not considered for literature search because it abbreviates “network on a chip” (NoC) and “system on a chip” (SoC), which produces an immense number of other results

  • The authors expect the same trends in the future since the online and digital scenarios have taken the front seat during this pandemic

Read more

Summary

INTRODUCTION

Network operation was the only requirement for network-based organizations and not even its management [1]. SOC teams are often get siloed and separated while serving different functionalities of the same campaign, which they really should not be [2], [5]-[7] This siloed environment leads to poor incident response time SLAs in handling various incidents and thereby puts information technology (IT) infrastructure and assets of organizations at significant risk [7], [8]. A few challenges include non-availability of standards, integrated toolsets, insufficient automation, an unwillingness to share data thinking it might be mishandled or misinterpreted, and a lack of cross-team skills These differences in views and challenges thwart organizations from integrating NOC and SOC and researchers from further innovation in this field [18]. This part focused on bringing the state-of-the-art of an integrated NOC and SOC from relevant literature. The author concludes with a complete systematic review of the analysis

RELATED WORK
42 Articles Excluded After Full Text Screened
FINDINGS AND INTERPRETATION
DEFINITIONS
BUILDING BLOCKS OF AN INTEGRATED NOC & SOC
Evaluation
USEFULNESS OF INTEGRATED NOC AND SOC
VIII. CONCLUSION
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call