CFP last date
20 December 2024
Reseach Article

Design and Implementation of a Chatbot for the Supervision of Security Events (SIEM)

by Deussom Djomadji Eric Michel, Tonye Emmanuel, Bama Si Franck Arnold Franck, Binele Abana Alphonse
International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Volume 185 - Number 14
Year of Publication: 2023
Authors: Deussom Djomadji Eric Michel, Tonye Emmanuel, Bama Si Franck Arnold Franck, Binele Abana Alphonse
10.5120/ijca2023922831

Deussom Djomadji Eric Michel, Tonye Emmanuel, Bama Si Franck Arnold Franck, Binele Abana Alphonse . Design and Implementation of a Chatbot for the Supervision of Security Events (SIEM). International Journal of Computer Applications. 185, 14 ( Jun 2023), 41-53. DOI=10.5120/ijca2023922831

@article{ 10.5120/ijca2023922831,
author = { Deussom Djomadji Eric Michel, Tonye Emmanuel, Bama Si Franck Arnold Franck, Binele Abana Alphonse },
title = { Design and Implementation of a Chatbot for the Supervision of Security Events (SIEM) },
journal = { International Journal of Computer Applications },
issue_date = { Jun 2023 },
volume = { 185 },
number = { 14 },
month = { Jun },
year = { 2023 },
issn = { 0975-8887 },
pages = { 41-53 },
numpages = {9},
url = { https://ijcaonline.org/archives/volume185/number14/32766-2023922831/ },
doi = { 10.5120/ijca2023922831 },
publisher = {Foundation of Computer Science (FCS), NY, USA},
address = {New York, USA}
}
%0 Journal Article
%1 2024-02-07T01:26:05.191992+05:30
%A Deussom Djomadji Eric Michel
%A Tonye Emmanuel
%A Bama Si Franck Arnold Franck
%A Binele Abana Alphonse
%T Design and Implementation of a Chatbot for the Supervision of Security Events (SIEM)
%J International Journal of Computer Applications
%@ 0975-8887
%V 185
%N 14
%P 41-53
%D 2023
%I Foundation of Computer Science (FCS), NY, USA
Abstract

Companies around the world are the first targets of cybercriminals, because the end product of their attacks is much more lucrative than that of targeted attacks against individuals. As a result, businesses have much greater and more stringent cyber security needs. Moreover, losses in cases of compromise can be evaluated in terms of tens of millions of CFA francs, which makes it a prime target for cybercriminals. Generally, in companies, all the intervention capacities are put into play through an Information System Security team in order to meet the maximum-security needs of its information system. This team is often responsible for the SOC (Security Operation Centre), i.e., the supervision of the security of the information system of a structure through tools of collection, correlation of events and remote intervention. The main mission of the SOC is to identify, analyse and ameliorate cyber security incidents. To assist this team in the continuous management of security and to improve the response time to various security incidents, we designed and implemented a conversational agent for security event monitoring using the ELK Stack SIEM tool. As a result, we obtained a conversational agent that is able to identify and analyse security incidents and events of the company's information system, centralize and have a global view of the security status of all monitored devices, create personalized and adequate rules that can detect flaws in the system, provide reports on security incidents and events through voice exchanges. This will allow the SOC to fulfil the first two terms of its main mission, i.e. the identification and analysis of incidents in order to be able to react more quickly and efficiently to them, thus fulfilling the third and last term of its main mission, remediation.

References
  1. Mathieu Pierre, Sylvain Loizeau, The impact of new information and communication technologies. (accessed on 30/02/2022)
  2. Myriam QUEMENER (October 2008), Cyber threats, companies and Internet users (consulted on 30/02/2022)
  3. Federal Bureau of Investigation (2021), Internet Crime Report. (Accessed on 19/03/2022)
  4. Monday, October 25, 2021 https://web.antic.cm/antic.cm/index.php/fr/news/blog-items-by-tags/itemlist/date/2021/10/25 (Accessed 02/30/2022)
  5. NGANE Noelle (2021), Mise ne place d’un système de gestion d’événements dans un réseau distant. Mémoire de fin d’études, ENSPY, UY1, Cameroun.
  6. Openclassroom, Optimize IT security with monitoring https://openclassrooms.com/fr/courses/ (Accessed on 08/06/2022)
  7. Fortinet (2019), SOC Analyst Bases Online Course (consulté le 18/04/2022)
  8. H. Shah et al. Can machines talk? Comparison of Eliza with modern dialogue systems Computers in Human Behavior. (2016).
  9. Elastic SIEM Fundamentals elastic.co/training (Accessed on 20/06/2022)
  10. Les deux types de chatbots, https://mbamci.com/un-chatbot-pour-mes-clients-pourquoi-comment/ (Consulté le 20/03/2022)
  11. Agent conversationnel intelligent, https://www.citizencall.fr/agent-conversationnel-intelligence-artificielle/ (Consulté le 17/06/2022)
  12. J. Hill et al. Real conversations with artificial intelligence: A comparison between human–human online conversations and human–chatbot conversations. Computers in Human Behavior. (2015)
  13. Alphorm (2020), Fonctionnement de base d’un SIEM (consulté le 10/03/2022)
  14. Assayed SK, Shaalan K, Alkhatib M. A Chatbot Intent Classifier for Supporting High School Students. EAI Endorsed Scal Inf Syst [Internet]. 2022 Dec. 21 [cited 2023 Apr. 27];10(3):e1. Available from: https://publications.eai.eu/index.php/sis/article/view/2948
  15. Santana, R., Ferreira, S., Rolim, V., de Miranda, P. B., Nascimento, A. C., & Mello, R. F. (2021). A Chatbot to Support Basic Students Questions. In LALA (pp. 58-67).
  16. Zahour, O., El Habib Benlahmar, A. E., Ouchra, H., & Hourrane, O. (2020). Towards a Chatbot for educational and vocational guidance in Morocco: Chatbot E-Orientation. International Journal, 9(2).
  17. Fryer, L. K., Nakao, K., & Thompson, A. (2019). Chatbot learning partners: connecting learning experiences, interest and competence. Computers in Human Behavior, 93, 279–289. https://doi.org/10.1016/j.chb.2018.12.023
  18. Abbas, N., Whitfield, J., Atwell, E., Bowman, H., Pickard, T., & Walker, A. (2022). Online chat and chatbots to enhance mature student engagement in higher education. International Journal of Lifelong Education, 1-19.
  19. Hamad, S., & Yeferny, T. (2020). A chatbot for information security. arXiv preprint arXiv:2012.00826.
  20. Cecile L. NLEMBA, Emmanuel TONYE, Alphonse BINELE ABANA; Maintenance Assisted by Artificial Intelligence (MAAI); London Journal of Research in Computer Science and Technology, volume 22, issue 1, compilation 1.0; 2022.
  21. Jean MELI TAMWA, Emmanuel TONYE, Alphonse BINELE ABANA, Chantal MVEH; Intrusion Detection aided by Artificial Intelligence (IDAI); American Journal of Engineering Research (AJER); volume-11, Issue-03, pp99-106; march 2022.
  22. DEUSSOM Eric, MATEMTSAP MBOU B., TCHAGNA KOUANOU A., Michael EKONDE SONE, & BAYONBOG Parfait, Machine learning-based approach for designing and implementing a collaborative fraud detection model through CDR and traffic analysis. Transactions on Machine Learning and Artificial Intelligence, Yaoundé, 2022.
  23. Deussom Djomadji Eric Michel, Kabiena Ivan Basile, Tchapga Tchito Christian, Kouam Djoko Ferr V. and Michael Ekonde Sone. (2023)Machine Learning-Based Approach for Identification of SIM Box Bypass Fraud ina Telecom Network Based on CDR Analysis:Case of a Fixed and Mobile Operator in Cameroon. Journal of Computer and Communications , 11, 142-157. https://doi.org/10.4236/jcc.2023.112010
  24. BATCHAKUI Bernabe, DEUSSOM DJOMADJI Eric Michel, CHANA Anne, MAMA TSIMI Serge Fabrice, (2022) Comparing Machine Learn-ing Algorithms for Improving the Maintenance of LTE Networks Based on Alarms Analysis. Journal of Computer and Communications, 10, 125-137. https://doi.org/10.4236/jcc.2022.1012010.
  25. DEUSSOM DJOMADJI, E. M., Takembo, T.C., Tchapga Tchito, C., Mamadou, A.and Michael Ekonde Sone. (2023) Machine Learning-Based Alarms Classification and Correlation in an SDH/WDM Optical Network to Improve Network Maintenance. Journal of Computer and Communications, 11,122-141. https://doi.org/10.4236/jcc.2023.112009
  26. Qingchuan Meng, Youzi Zhang, Fengzhi Wu, Xiaoming Chen, Network Intrusion Detection Model Based on Artificial Intelligence, Journal of Physics Conference Series, August 2020.
  27. Anitha A, SV Revathi, S Jeevanantham, E Eliza Godwin, Intrusion Detection System based on Artificial Intelligence, International Journal of Technology, January 2017.
  28. ANDELA OLINGA Yvette Ophélie, Conception et réalisation d’un chatbot pour la supervision des évènements de sécurité (SIEM) Mémoire de fin d’étude en vue de l’obtention du diplôme d’ingénieur de conception Option Génie des Télécommunications à l’ENSP, UYI, Juillet 2022.
Index Terms

Computer Science
Information Sciences

Keywords

Cybersecurity information systems security security event monitoring conversational agent SIEM.