iso27diy-corp/Corpus/Standards/Open Cybersecurity Schema Framework.md

990 B
Raw Permalink Blame History

Open Cybersecurity Schema Framework

for sharing cybersecurity information

Project Open Cybersecurity Schema Framework on Github

18 tech and cybersecurity companies co-launched a proposed standard for sharing cybersecurity information called the Open Cybersecurity Schema Framework (OCSF). The goal is to standardize things like alerts and logs from various tools, and to help streamline data pipeline creation for training AI models. Primary participants include Amazon, Splunk, IBM, Crowdstrike, Rapid7, Palo Alto, and Cloudflare.

Goals/reasons:

  • help organizations detect, investigate and stop cyberattacks faster and more effectively.
  • help all security teams realize better, faster data ingestion and analysis without the time-consuming, up-front normalization tasks.
  • decrease time spent on normalizing data across different tools
  • increasing interoperability between tools