The article discusses the possibilities of forming a knowledge base as a multi-agent expert system for support and decision-making by officials of critical information infrastructure (CII) facilities and situational departmental centers of the State SOPKA, determines the tasks it solves, and on the basis of knowledge engineering, the choice of the strategy for obtaining knowledge «knowledge formation» is made. To implement the chosen strategy, the APNI JSM method (inductive D.S. Mill method [8], developed with the support of the Agency for Advanced Research) [3] is proposed, which is suitable for the conditions of applicability. In the development of the method, it is proposed to complete the whole process of resolving uncertainty, the epistemological chain «Problem — Hypothesis» [9] to be completed with the link «Law» with the establishment of a pattern for determining the identifier of a computer attack in the block of a false network information object (LSIO) of the information security system (ISI) of the CII object [3].
Read full abstract