How Can We Help?
Attack Sensing and Warning (AS&W)
What is Attack Sensing and Warning (AS&W)?
Definition:
SOURCE: CNSSI-4009
- Detection: Identifying suspicious activity, often through intrusion detection systems (IDS), security information and event management (SIEM) tools, and other monitoring mechanisms.
- Correlation: Analyzing and connecting various alerts and events to identify patterns and potential attacks.
- Identification: Determining the specific type of attack, such as a denial-of-service (DoS) attack, malware, or phishing attempt.
- Characterization: Understanding the scope, impact, and potential vulnerabilities exploited by the attack.
- Notification: Promptly alerting decision-makers and relevant stakeholders about the detected threat, allowing for a swift response.