University of Twente Student Theses

Login
As of Friday, 8 August 2025, the current Student Theses repository is no longer available for thesis uploads. A new Student Theses repository will be available starting Friday, 15 August 2025.

Measuring Metrics in Incident Response

Ahmed, Wahab (2025) Measuring Metrics in Incident Response.

[img] PDF
689kB
Abstract:In today's cybersecurity landscape, Incident Response plays a critical role in mitigating the impact of increasingly sophisticated cyber-attacks. To measure the effectiveness of Incident Response, organizations deploy several metrics. However, these metrics often face limitations and challenges which will be covered in this study. The contribution of this paper is to identify some metrics that have been well-defined and explain their method of measurement, and any challenges associated with them. The goal is to serve as an educational resource for analysts or beginners to better understand how these metrics function. This will be done by using academic literature and real-world reports to extract well-known metrics. Additionally, this study will develop a prototype of a Security Information and Event Manager (SIEM) to demonstrate how different scenarios can impact the measurement of a metric.
Item Type:Essay (Bachelor)
Faculty:EEMCS: Electrical Engineering, Mathematics and Computer Science
Subject:54 computer science
Programme:Computer Science BSc (56964)
Link to this item:https://purl.utwente.nl/essays/107328
Export this item as:BibTeX
EndNote
HTML Citation
Reference Manager

 

Repository Staff Only: item control page