SecSAGE: NIST Cybersecurity Framework Visualization on SAGE2

dc.contributor.authorSawangphol W.
dc.contributor.authorKhurat A.
dc.contributor.authorNiampradit N.
dc.contributor.correspondenceSawangphol W.
dc.contributor.otherMahidol University
dc.date.accessioned2024-08-31T18:25:53Z
dc.date.available2024-08-31T18:25:53Z
dc.date.issued2024-07-01
dc.description.abstractCybersecurity has been an area of great interest for an organization, given the significance of data and the increasing cybersecurity threats. The National Institute of Standards and Technology (NIST) has developed a cybersecurity framework intended for voluntary utilization by critical infrastructure owners and operators. Its primary purpose is to aid in the effective management of cybersecurity risks. This framework, similar to many other security standards, comprises a substantial volume of textual information that can be challenging to grasp comprehensively in a limited timeframe. In response to this challenge, we designed and developed an interactive visualization of the NIST Cybersecurity Framework using the SAGE2 platform. Our objective is to facilitate a better understanding of the framework. In addition, using SAGE2 enhances collaborative working. In our project, we analyze the content within the NIST document and map the framework's five core functions into a rich visualization workflow. Each function includes categories, sub-categories, and references that users can interactively explore. Our experiments show that our visualization can help participants correctly find the information about the NIST Cybersecurity Framework faster than manually finding the information in the document. For all tasks, participants can complete the tasks around 4.25 times faster than the manual method on average.
dc.identifier.citationECTI Transactions on Computer and Information Technology Vol.18 No.3 (2024) , 417-428
dc.identifier.doi10.37936/ecti-cit.2024183.256034
dc.identifier.eissn22869131
dc.identifier.scopus2-s2.0-85201814853
dc.identifier.urihttps://repository.li.mahidol.ac.th/handle/123456789/100680
dc.rights.holderSCOPUS
dc.subjectComputer Science
dc.subjectEngineering
dc.subjectDecision Sciences
dc.titleSecSAGE: NIST Cybersecurity Framework Visualization on SAGE2
dc.typeArticle
mu.datasource.scopushttps://www.scopus.com/inward/record.uri?partnerID=HzOxMe3b&scp=85201814853&origin=inward
oaire.citation.endPage428
oaire.citation.issue3
oaire.citation.startPage417
oaire.citation.titleECTI Transactions on Computer and Information Technology
oaire.citation.volume18
oairecerif.author.affiliationMahidol University
oairecerif.author.affiliationAgoda Company Pte. Ltd

Files

Collections