Subject: Security Data Analytics (19.IB25)

The goal of the Security Data Analytics course is to prepare students for higher-level security analyst roles (L2/L3). Experts possessing relevant skills in this domain are highly sought after in various industries, e.g. financial infrastructures (e.g. banks, credit card system operators), big multi-national companies, ministries and various Computer Emergency Response Teams (CERT).

The students will become familiar with the different security monitoring data types. They will learn the necessary techniques for collecting, preprocessing and storing security monitoring data. They will become familiar with different data analysis and visualization solutions. They will acquire detailed knowledge of anomaly detection techniques and challenges. Additionally, they will become familiar with the operating environment in modern Security Operations Centers (SOC).

Network and system security monitoring data types. Full packet capture data. Packet string data. Session data. Operating system and application log data. Security intelligence data feeds and their analysis. Detection mechanisms and indicators of compromise. Rule- and reputation-based data analysis. Anomaly-based detection with statistical data. Anomaly-based detection with machine learning techniques. Anomaly detection challenges. Computer Emergency Response Teams (CERTs). Security analytics and automation in the Security Operations Centers (SOC).

Lectures; Other forms of teaching; Consultations.

Clarence Chio, David Freeman Machine Learning and Security: Protecting Systems with Data and Algorithms 2018 OReilly Media English
Chris Sanders, Jason Smith Applied network security monitoring 2014 Syngress English
Драган Кукољ Системи засновани на рачунарској интелигенцији 2007 Нови Сад , Факултет техничких наука Serbian language
Soma Halder Hands-on Machine Learning for Cybersecurity 2018 Packt Publishing English
Марин Гостимировић База података обрадних процеса 2013 Нови Сад : Факултет техничких наука Serbian language
Момчило Новковић Нелинеарни модели временских серија : допринос теорији и пракси 2002 Нови Сад : Факултет техничких наука Serbian language
Дарко Чапко, Срђан Вукмировић, Дубравка Бојанић Одабрана поглавља из моделовања и симулације система у Матлабу 2016 Нови Сад : Факултет техничких наука Serbian language
Leslie F. Sikos AI in Cybersecurity 2018 Springer English
Владимир Остојић, Татјана Лончар-Турукало Практикум за рачунарске вежбе из дигиталне обраде слике 2016 Нови Сад : Факултет техничких наука Serbian language
Sumeet Dua, Xian Du Data mining and machine learning in cybersecurity 2016 Auerbach Publications English
