RealNews

TRC Advisor DOROTHY DENNING paper “An Intrusion Detection Model” is highlighted in SECURITY FOCUS ONLINE

ONE OF THESE THINGS IS NOT LIKE THE OTHERS: THE STATE OF ANOMALY DETECTION

Anomaly detection can be described as an alarm for strange system behavior. The concept stems from a paper fundamental to the field of security – An Intrusion Detection Model, by Dorothy Denning. In it, she describes building an “activity profile” of normal usage over an interval of time. Once in place, the profile is compared against real time events. Anything that deviates from the baseline, or the norm, is logged as anomalous. Full Story

OODA Analyst

OODA Analyst

OODA is comprised of a unique team of international experts capable of providing advanced intelligence and analysis, strategy and planning support, risk and threat management, training, decision support, crisis response, and security services to global corporations and governments.