Summary
In this chapter, we have studied the basic concepts of cyber security and the significance of Big Data in dealing with threats to the security of critical applications. Big data processing has two fundamental types, batch processing and real-time processing, for streaming data sources. We have studied the fundamental concepts and frameworks in batch and real-time processing.
Real-time stream-based processing is important in dealing with cyber security threats. We have seen the different types of common security threats and vulnerabilities exploited by the attackers. Machine learning and AI are largely democratized and leveraged by attackers for sophisticated attacks on the CIs. This makes utilization of machine learning and AI a critical consideration while building the systems which deal with cyber security attacks. We have reviewed the basic building blocks of the SIEM systems and a couple of examples, Splunk and ArcSight SEM, as two of the most popular SIEM frameworks. The field...