USA flag logo/image

An Official Website of the United States Government

Real-time Visualization Tool for Distributed Intrusion Detection System Data

Award Information

Agency:
Department of Defense
Branch:
Army
Award ID:
97817
Program Year/Program:
2010 / SBIR
Agency Tracking Number:
A101-010-0218
Solicitation Year:
N/A
Solicitation Topic Code:
Army 10-010
Solicitation Number:
N/A
Small Business Information
Sentar, Inc.
315 Wynn Drive Suite 1 Huntsville, AL 35805
View profile »
Woman-Owned: Yes
Minority-Owned: No
HUBZone-Owned: No
 
Phase 1
Fiscal Year: 2010
Title: Real-time Visualization Tool for Distributed Intrusion Detection System Data
Agency / Branch: DOD / ARMY
Contract: W15P7T-10-C-H603
Award Amount: $68,669.00
 

Abstract:

Current intrusion detection systems are effective for collecting large quantities of event data, but they are inadequate for presenting information to security analysts in a useful way. Typically, to investigate a single problem, an analyst must study reams of data and devote substantial hours to writing complex custom filters; frequently critical data is distributed among multiple logs and available only on remote consoles, requiring access from multiple physical locations. To address this problem, Sentar proposes to develop a real-time visualization system, called Visual Net Defender (VND). VND aggregates, correlates, and presents data from multiple intrusion detection systems and enriches this information with data acquired through passive and active network monitoring. VND uses a multi-tier information architecture rendered in three dimensional space, using iconography based on familiar, recognizable objects, providing details on demand, while eliminating useless noise. Within this rich interactive environment, security conditions can be contextualized in intuitive ways that go beyond signature-based detection or automated correlation, allowing the analyst to integrate macro- and micro-level knowledge seamlessly and rapidly. By enabling systems and humans to do what they do best, VND permits the analyst to maintain an in-depth understanding the situation, resulting in better decision making, and therefore better security.

Principal Investigator:

Andrew Potter
Chief Scientist
2564300860
andrew.potter@sentar.com

Business Contact:

Sharon Yalowitz
Chief Scientist
2564300860
cassin@materials-sciences.com
Small Business Information at Submission:

Sentar, Inc.
315 Wynn Drive Suite 1 Huntsville, AL 35805

EIN/Tax ID: 630947741
DUNS: N/A
Number of Employees:
Woman-Owned: No
Minority-Owned: No
HUBZone-Owned: No