A Security Operations and Analytics Framework: Continuous Detection and Response

Prof Doc Thesis


Ayittey, G. 2025. A Security Operations and Analytics Framework: Continuous Detection and Response. Prof Doc Thesis University of East London School of Architecture, Computing and Engineering
AuthorsAyittey, G.
TypeProf Doc Thesis
Abstract

Security operations face several challenges, including the increasing volume and complexity of security data, limited analyst resources, and sophisticated cyber threats. This study is motivated by three main factors: the need to utilise advanced technologies, improve operational efficiency, and apply theoretical progress to practical cybersecurity solutions.

To address these issues, this study proposes a Security Operations and Analytics Framework (SOAF) emphasising automation and continuous detection and response. The framework integrates tools such as Wazuh, Elasticsearch, Kibana, TheHive and Cortex within a Security Operations and Analytics Platform (SOAP), leveraging AI, machine learning, and automation to enhance cybersecurity operations.

The effectiveness of the SOAF is evaluated using a design science research methodology. Two case studies demonstrate the framework’s ability to reduce incident response times from three hours to one hour, increase detection accuracy by 80%, and streamline threat detection, analysis, and incident response operations.

The study concludes by analysing its findings, discussing the consequences, acknowledging constraints, and providing actionable recommendations for future research. The implementation of the SOAF showcases key functionalities in a practical setting, highlighting the framework’s theoretical and practical contributions to advancing security operations and analytics.

Year2025
PublisherUniversity of East London
File
License
File Access Level
Anyone
Publication dates
Online23 May 2025
Publication process dates
Completed19 May 2025
Deposited23 May 2025
Copyright holder© 2025 The Author. Original content in this thesis is licensed under the terms of the Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International (CC BY-NC-ND 4.0) Licence (https://creativecommons.org/licenses/by-nc-nd/4.0). Any third-party copyright material present remains the property of its respective owner(s) and is licensed under its existing terms.
Permalink -

https://repository.uel.ac.uk/item/8z91z

Download files


File
2025_D.InfoSe_Ayittey.pdf
License: CC BY-NC-ND 4.0
File access level: Anyone

  • 3
    total views
  • 1
    total downloads
  • 3
    views this month
  • 1
    downloads this month

Export as