Open Cybersecurity Schema Framework (OCSF) Joins the Linux Foundation to Optimize Critical Security Data
Open Cybersecurity Schema Framework (OCSF) Joins the Linux Foundation to Optimize Critical Security Data
OCSF Simplifies Security Data Challenges and Creates Flexibility for Security Teams and Data Producers, Empowering Organizations to Effectively Mitigate Cyber Risks
OCSF簡化了安全數據挑戰,併爲安全團隊和數據生產者創造了靈活性,使組織能夠有效減輕網絡風險
NAPA, Calif., Nov. 19, 2024 /PRNewswire/ -- Linux Foundation Member Summit – The Linux Foundation, the nonprofit organization enabling mass innovation through open source, welcomes the Open Cybersecurity Schema Framework (OCSF) to the Linux Foundation family of projects. This new partnership aims to drive the development and adoption of an open, extensible framework for cybersecurity data schemas. OCSF enables security teams and data producers to work seamlessly within a standardized framework to accelerate threat detection, response, and innovation.
加利福尼亞州納帕,2024年11月19日 / PRNewswire / -- Linux基金會成員峯會 – Linux Foundation這個非營利組織通過開源推動大規模創新,歡迎 開放網絡安全架構框架(OCSF) 加入Linux基金會項目家族。這一新夥伴關係旨在推動開放、可擴展的網絡安全數據架構的開發和採用。OCSF使安全團隊和數據生產者能夠在標準化框架內無縫工作,加速威脅檢測、響應和創新。
Founded in 2022 with support from leading technology companies—including AWS, Cisco, IBM, Splunk, and derived from schema work done by Broadcom (Symantec)—OCSF provides a unified language to simplify and standardize how security data is managed, shared, and analyzed across diverse environments. The OCSF project has grown significantly into a thriving ecosystem with over 900 contributors and 200 participating organizations, including security-focused independent software vendors (ISVs), government agencies, educational institutions, and enterprises. With OCSF now under the Linux Foundation, contributors have greater access to develop and expand a framework that empowers data producers, engineers, and security teams to work together seamlessly to effectively address emerging cyber threats.
OCSF於2022年成立,獲得包括AWS、思科、IBM、splunk等領先科技公司的支持,並源於博通(賽門鐵克)所做的架構工作。OCSF提供了一種統一的語言,簡化和標準化安全數據在多種環境中的管理、共享和分析。OCSF項目顯著發展成爲一個繁榮的生態系統,擁有超過900名貢獻者和200個參與組織,包括專注於安全的獨立軟件供應商(ISVs)、政府機構、教育機構和企業。隨着OCSF現在加入Linux基金會,貢獻者擁有更大的機會開發和擴展一個框架,使數據生產者、工程師和安全團隊能夠無縫協作,有效應對新興網絡威脅。
OCSF provides a unified language to simplify and standardize how security data is managed, shared, and analyzed.
OCSF提供了一種統一的語言,簡化和標準化安全數據的管理、共享和分析。
"With cybersecurity incidents on the rise, the need for collaborative, open source solutions grows with each passing day," said Executive Director of the Linux Foundation, Jim Zemlin. "We are pleased to bring the Open Cybersecurity Schema Framework into the Linux Foundation, marking a unique opportunity for the industry to converge on how security data is managed and used."
「隨着網絡安全事件的增加,對協作和開源解決方案的需求與日俱增,」Linux基金會執行董事Jim Zemlin表示。「我們很高興將開放網絡安全架構框架帶入Linux基金會,這爲行業提供了一個獨特的機會,以匯聚如何管理和使用安全數據。」
Detection engineering, threat hunting, analytics development, and the rise of artificial intelligence are often hindered by the absence of a standard format and data model for cybersecurity logs and alerts. The OCSF framework comprises a set of data types, an attribute dictionary, and a taxonomy. Since its initial release of version 1.0.0 in September 2023, OCSF has undergone rapid evolution, demonstrating the community's commitment to continuously enhancing the framework. The latest version, 1.3.0, released in August 2024, introduces new event classes for software inventory, remediation activities, and an OSINT profile for cyber threat intelligence enrichment, further solidifying OCSF's role in standardizing cybersecurity data. Developed initially as a schema for cybersecurity events, the OCSF's open standard can today be adopted in any environment, application, or solution.
檢測工程、威脅狩獵、分析開發以及人工智能的崛起常常受到網絡安全日誌和警報缺乏標準格式和數據模型的阻礙。OCSF框架包含了一組數據類型、屬性字典和分類法。自2023年9月首次發佈1.0.0版本以來,OCSF經歷了快速的演進,展示了社區對持續提升框架的承諾。最新版本1.3.0於2024年8月發佈,引入了軟件清單、補救活動的新事件類別,以及用於網絡威脅情報豐富化的OSINT資料,更進一步鞏固了OCSF在標準化網絡安全數據中的角色。最初作爲網絡安全事件的架構開發,OCSF的開放標準如今可以在任何環境、應用或解決方案中採用。
For more information and to contribute, visit: .
有關更多信息並進行貢獻,請訪問: .
Supporting Quotes
Supporting Quotes
AWS
"We believe that joining the Linux Foundation will strengthen OCSF's role as a leading open security data schema and accelerate its adoption across the industry," said Gee Rittenhouse, Vice President of Security Services, AWS. "With the Linux Foundation's extensive resources and strong governance model, we aim to empower the security community to collaborate more effectively and drive innovation in addressing cyber risks."
AWS
「我們相信,加入Linux基金會將加強OCSF作爲領先開源安全數據架構的角色,並加快其在行業內的 adoption,」AWS安全服務副總裁Gee Rittenhouse表示。「藉助Linux基金會的豐富資源和強大治理模型,我們旨在賦能安全社區更有效地合作,並推動創新以應對網絡風險。」
Broadcom
"Broadcom is proud to have contributed the Symantec ICD schema as the foundation for the OCSF project. We support OCSF in our own portfolio today, helping streamline Security Operations for organizations that leverage a wide range of telemetry sources in their investigations," said Jason Rolleston, Vice President and General Manager, Enterprise Security Group, Broadcom. "Joining the Linux Foundation will greatly enhance the visibility of OCSF, increase innovation around the standard, and hasten its overall adoption."
博通
博通很自豪能夠將Symantec ICD架構作爲OCSF項目的基礎貢獻出來。博通在我們自己的產品組合中支持OCSF,幫助簡化機構在調查中利用廣泛的遙測源進行的安全操作,"博通企業安全集團副總裁兼總經理Jason Rolleston說。"加入Linux基金會將極大增強OCSF的可見性,增加圍繞該標準的創新,並加快其整體採用。"
Cisco
"In my experience developing eBPF and Cilium, I've seen firsthand how open standards can drive innovation and efficiency. Adopting the Open Cybersecurity Schema Framework (OCSF) under the Linux Foundation will similarly enable organizations like Cisco to enhance real-time threat detection and response," said Thomas Graf, Co-founder and Chief Technology Officer, Isovalent, now part of Cisco. "By reducing the friction associated with data normalization, we can focus more on proactive security strategies and delivering value to our customers."
思科
"在我開發 eBPF 和 Cilium 的經驗中,我親眼見證了開放標準如何推動創新和效率。在Linux基金會下采用開放網絡安全架構(OCSF)同樣能夠使機構如思科增強實時威脅檢測和響應,"Isovalent的聯合創始人兼首席技術官Thomas Graf說,現在已成爲思科的一部分。"通過減少與數據標準化相關的摩擦,我們可以更專注於主動的安全策略,併爲我們的客戶提供價值。"
IBM
"OCSF and IBM share a passion for open-source innovation and a commitment to strengthening the cybersecurity community," said Sridhar Muppidi, IBM Fellow, VP & CTO, IBM Security. "As AI and hybrid cloud transformation evolve, OCSF's work is more crucial than ever. We're excited to support its journey with the Linux Foundation and to continue shaping a secure, collaborative future together."
IBM
"OCSF與IBm共享對開源創新的熱情,並致力於加強網絡安全社區,"IBm Fellow、VP & CTO Sridhar Muppidi說。"隨着人工智能和混合雲轉型的發展,OCSF的工作比以往任何時候都更爲重要。我們很高興支持它與Linux基金會的旅程,並繼續共同塑造一個安全、合作的未來。"
Splunk
"We are proud to continue our support for the Open Cybersecurity Schema Framework (OCSF) as it joins The Linux Foundation's family of projects," said Paul Agbabian, Vice President of Security Technology Leadership, Splunk, a Cisco company. "In just two years, OCSF has grown from a small group of companies into a diverse coalition that includes industry leaders, customers, government agencies and educational institutions, all working together to address shared security challenges. With The Linux Foundation's support and infrastructure, OCSF will be well-positioned to sustain and extend its impact, driving further innovation and interoperability in open-source cybersecurity."
splunk
"我們很自豪繼續支持開放網絡安全架構(OCSF),因爲它加入了Linux基金會的項目大家庭,"Splunk即思科公司的安全技術領導副總裁Paul Agbabian說。"在短短兩年內,OCSF已經從一個小型公司團體發展成爲一個多元化的聯盟,其中包括行業領導者、客戶、政府機構和教育機構,大家共同努力應對共同的安全挑戰。在Linux基金會的支持和基礎設施下,OCSF將能很好地維持和擴大其影響力,推動開源網絡安全中的進一步創新和互操作性。"
About the Linux Foundation
關於Linux基金會
The Linux Foundation is the world's leading home for collaboration on open source software, hardware, standards, and data. Linux Foundation projects are critical to the world's infrastructure including Linux, Kubernetes, Node.js, ONAP, OpenChain, OpenSSF, PyTorch, RISC-V, SPDX, Zephyr, and more. The Linux Foundation focuses on leveraging best practices and addressing the needs of contributors, users, and solution providers to create sustainable models for open collaboration. For more information, please visit us at linuxfoundation.org.
Linux Foundation 是世界領先的開源軟件、硬件、標準和數據協作之家。Linux Foundation 項目對包括 Linux、Kubernetes、Node.js、ONAP、OpenChain、OpenSSF、PyTorch、RISC-V、SPDX、Zephyr 等在內的全球基礎設施至關重要。Linux Foundation 着重於利用最佳實踐,並滿足貢獻者、用戶和解決方案提供商的需求,打造可持續的開放協作模式。欲了解更多信息,請訪問我們的網站 linuxfoundation.org。
Media Contact
Jennifer Bly
The Linux Foundation
[email protected]
媒體聯繫
詹妮弗·布萊
Linux Foundation
[email protected]
SOURCE The Linux Foundation
來源:Linux基金會
WANT YOUR COMPANY'S NEWS FEATURED ON PRNEWSWIRE.COM?
想要您公司的新聞在PRNEWSWIRE.COM上特色呈現嗎?
譯文內容由第三人軟體翻譯。