Abstract:
The detection of anomalies in the movement of employees is an important task of the cyber-physical security of enterprises, including critical infrastructures. The paper presents a technique to analyze the routes of the organization employees based on combination of the data mining and interactive visualization techniques. It includes two stages – detection of the groups of the employees with similar behavior and anomaly discovery. The self-organizing Kohonen maps are used to group employees on the basis of their behavior. To present spatiotemporal patterns, authors developed special visualization model named BandView. To detect anomalies authors present a rating mechanism assessing spatiotemporal attributes of the movement. The visualization of the anomalies is done using heatmaps that allow an analyst to spot place and time with a possibly suspicious activity. The technique is tested against data set provided within VAST MiniChallenge-2 contest that contains logs from access control sensors describing employees’ movement within organization building.
This research is supported by RFBR (projects No. 16-07-00625 in ETU and
partly by the budget (projects no. 0073-2015-0004 and 0073-2015-0007) in SPIIRAS.
Bibliographic databases:
Document Type:
Article
UDC:
004.056.5
Language: Russian
Citation:
E. S. Novikova, I. N. Murenin, “The technique of the visual analysis of the organization employees routes for anomaly detection”, Tr. SPIIRAN, 54 (2017), 57–83
\Bibitem{NovMur17}
\by E.~S.~Novikova, I.~N.~Murenin
\paper The technique of the visual analysis of the organization employees routes for anomaly detection
\jour Tr. SPIIRAN
\yr 2017
\vol 54
\pages 57--83
\mathnet{http://mi.mathnet.ru/trspy966}
\crossref{https://doi.org/10.15622/sp.54.3}
\elib{https://elibrary.ru/item.asp?id=30282020}
Linking options:
https://www.mathnet.ru/eng/trspy966
https://www.mathnet.ru/eng/trspy/v54/p57
This publication is cited in the following 3 articles:
Evgenia Novikova, Igor Kotenko, Ivan Murenin, “The Visual Analytics Approach for Analyzing Trajectories of Critical Infrastructure Employers”, Energies, 13:15 (2020), 3936
Evgenia Novikova, Yana Bekeneva, Andrey Shorov, 2019 27th Euromicro International Conference on Parallel, Distributed and Network-Based Processing (PDP), 2019, 373
Evgenia S. Novikova, Yana A. Bekeneva, Andrey V. Shorov, 2018 Third International Conference on Human Factors in Complex Technical Systems and Environments (ERGO)s and Environments (ERGO), 2018, 97