{"id":"https://openalex.org/W3198775197","doi":"https://doi.org/10.1145/3474718.3474723","title":"Combat Security Alert Fatigue with AI-Assisted Techniques","display_name":"Combat Security Alert Fatigue with AI-Assisted Techniques","publication_year":2021,"publication_date":"2021-08-09","ids":{"openalex":"https://openalex.org/W3198775197","doi":"https://doi.org/10.1145/3474718.3474723","mag":"3198775197"},"language":"en","primary_location":{"id":"doi:10.1145/3474718.3474723","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3474718.3474723","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cyber Security Experimentation and Test Workshop","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5014860606","display_name":"Tao Ban","orcid":"https://orcid.org/0000-0002-9616-3212"},"institutions":[{"id":"https://openalex.org/I90023481","display_name":"National Institute of Information and Communications Technology","ror":"https://ror.org/016bgq349","country_code":"JP","type":"facility","lineage":["https://openalex.org/I90023481"]}],"countries":["JP"],"is_corresponding":true,"raw_author_name":"Tao Ban","raw_affiliation_strings":["National Institute of Information and Communications Technology, Japan"],"affiliations":[{"raw_affiliation_string":"National Institute of Information and Communications Technology, Japan","institution_ids":["https://openalex.org/I90023481"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5016453346","display_name":"Samuel Ndichu","orcid":null},"institutions":[{"id":"https://openalex.org/I90023481","display_name":"National Institute of Information and Communications Technology","ror":"https://ror.org/016bgq349","country_code":"JP","type":"facility","lineage":["https://openalex.org/I90023481"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Ndichu Samuel","raw_affiliation_strings":["National Institute of Information and Communications Technology, Japan"],"affiliations":[{"raw_affiliation_string":"National Institute of Information and Communications Technology, Japan","institution_ids":["https://openalex.org/I90023481"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5029032117","display_name":"Takeshi Takahashi","orcid":"https://orcid.org/0000-0002-6477-7770"},"institutions":[{"id":"https://openalex.org/I90023481","display_name":"National Institute of Information and Communications Technology","ror":"https://ror.org/016bgq349","country_code":"JP","type":"facility","lineage":["https://openalex.org/I90023481"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Takeshi Takahashi","raw_affiliation_strings":["National Institute of Information and Communications Technology, Japan"],"affiliations":[{"raw_affiliation_string":"National Institute of Information and Communications Technology, Japan","institution_ids":["https://openalex.org/I90023481"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5071687365","display_name":"Daisuke Inoue","orcid":"https://orcid.org/0000-0002-4373-0834"},"institutions":[{"id":"https://openalex.org/I90023481","display_name":"National Institute of Information and Communications Technology","ror":"https://ror.org/016bgq349","country_code":"JP","type":"facility","lineage":["https://openalex.org/I90023481"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Daisuke Inoue","raw_affiliation_strings":["National Institute of Information and Communications Technology, Japan"],"affiliations":[{"raw_affiliation_string":"National Institute of Information and Communications Technology, Japan","institution_ids":["https://openalex.org/I90023481"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5014860606"],"corresponding_institution_ids":["https://openalex.org/I90023481"],"apc_list":null,"apc_paid":null,"fwci":5.4403,"has_fulltext":false,"cited_by_count":53,"citation_normalized_percentile":{"value":0.95889212,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":95,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"9","last_page":"16"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7772417068481445},{"id":"https://openalex.org/keywords/scheme","display_name":"Scheme (mathematics)","score":0.7243764400482178},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6906888484954834},{"id":"https://openalex.org/keywords/incident-response","display_name":"Incident response","score":0.5652120113372803},{"id":"https://openalex.org/keywords/security-information-and-event-management","display_name":"Security information and event management","score":0.5077334642410278},{"id":"https://openalex.org/keywords/visualization","display_name":"Visualization","score":0.4546854496002197},{"id":"https://openalex.org/keywords/network-security","display_name":"Network security","score":0.43706101179122925},{"id":"https://openalex.org/keywords/security-management","display_name":"Security management","score":0.43471696972846985},{"id":"https://openalex.org/keywords/cloud-computing-security","display_name":"Cloud computing security","score":0.2843360900878906},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.21334180235862732},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.20019644498825073}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7772417068481445},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.7243764400482178},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6906888484954834},{"id":"https://openalex.org/C2985105721","wikidata":"https://www.wikidata.org/wiki/Q13479512","display_name":"Incident response","level":2,"score":0.5652120113372803},{"id":"https://openalex.org/C103377522","wikidata":"https://www.wikidata.org/wiki/Q3493999","display_name":"Security information and event management","level":4,"score":0.5077334642410278},{"id":"https://openalex.org/C36464697","wikidata":"https://www.wikidata.org/wiki/Q451553","display_name":"Visualization","level":2,"score":0.4546854496002197},{"id":"https://openalex.org/C182590292","wikidata":"https://www.wikidata.org/wiki/Q989632","display_name":"Network security","level":2,"score":0.43706101179122925},{"id":"https://openalex.org/C83163435","wikidata":"https://www.wikidata.org/wiki/Q3954104","display_name":"Security management","level":2,"score":0.43471696972846985},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.2843360900878906},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.21334180235862732},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.20019644498825073},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1145/3474718.3474723","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3474718.3474723","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Cyber Security Experimentation and Test Workshop","raw_type":"proceedings-article"},{"id":"pmh:oai:elartu.tntu.edu.ua:lib/43329","is_oa":false,"landing_page_url":"http://elartu.tntu.edu.ua/handle/lib/43329","pdf_url":null,"source":{"id":"https://openalex.org/S4306401453","display_name":"ELARTU (Ternopil National Technical University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I92130990","host_organization_name":"Ternopil Ivan Pul'uj National Technical University","host_organization_lineage":["https://openalex.org/I92130990"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Master Thesis"},{"id":"pmh:oai:elartu.tntu.edu.ua:lib/44413","is_oa":false,"landing_page_url":"http://elartu.tntu.edu.ua/handle/lib/44413","pdf_url":null,"source":{"id":"https://openalex.org/S4306401453","display_name":"ELARTU (Ternopil National Technical University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I92130990","host_organization_name":"Ternopil Ivan Pul'uj National Technical University","host_organization_lineage":["https://openalex.org/I92130990"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference Abstract"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.4000000059604645}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":22,"referenced_works":["https://openalex.org/W1970470098","https://openalex.org/W1970978220","https://openalex.org/W2012169431","https://openalex.org/W2081807077","https://openalex.org/W2084602587","https://openalex.org/W2152449272","https://openalex.org/W2153635508","https://openalex.org/W2187089797","https://openalex.org/W2256845964","https://openalex.org/W2330269052","https://openalex.org/W2522803339","https://openalex.org/W2541267187","https://openalex.org/W2761599262","https://openalex.org/W2763978449","https://openalex.org/W2776676105","https://openalex.org/W2809178492","https://openalex.org/W2947745012","https://openalex.org/W2998714163","https://openalex.org/W3011302839","https://openalex.org/W3088420918","https://openalex.org/W3108481873","https://openalex.org/W4253405001"],"related_works":["https://openalex.org/W4256374004","https://openalex.org/W3048948897","https://openalex.org/W2015505306","https://openalex.org/W4246428902","https://openalex.org/W330653092","https://openalex.org/W2384723023","https://openalex.org/W4321844648","https://openalex.org/W2358770215","https://openalex.org/W2033357182","https://openalex.org/W2986166089"],"abstract_inverted_index":{"The":[0,67,88],"main":[1],"challenge":[2],"for":[3,37,112,131,154,159],"security":[4,14,26,38,100,134,157,161],"information":[5],"and":[6,75,85,116,149],"event":[7],"management":[8],"(SIEM)":[9],"is":[10,35,91,141],"to":[11,56,80],"find":[12],"critical":[13,114],"incidents":[15],"among":[16],"a":[17,45,107,117,155],"huge":[18],"number":[19],"of":[20,103,110,121],"false":[21,61,118],"alerts":[22,115],"generated":[23],"from":[24,60],"separate":[25],"products.":[27],"To":[28],"address":[29],"the":[30,41,99,124,138,145,152,163],"alert":[31,47,83,95,146],"fatigue":[32,147],"problem":[33],"that":[34,50],"common":[36],"experts":[39],"operating":[40],"SIEM,":[42],"we":[43],"propose":[44],"new":[46],"screening":[48],"scheme":[49,69,90,126,140],"leverages":[51],"artificial":[52],"intelligence":[53],"(AI)-assisted":[54],"tools":[55,79],"distinguish":[57],"actual":[58],"threats":[59],"alarms":[62],"without":[63],"investigating":[64],"every":[65],"alert.":[66],"proposed":[68,89,125,139],"incorporates":[70],"carefully":[71],"chosen":[72],"learning":[73],"algorithms":[74],"newly":[76],"designed":[77],"visualization":[78],"facilitate":[81],"speedy":[82],"analysis":[84],"incident":[86],"response.":[87],"evaluated":[92],"on":[93],"an":[94,104],"dataset":[96],"collected":[97],"in":[98,143],"operation":[101],"center":[102],"enterprise.":[105],"With":[106],"recall":[108],"rate":[109,120],"99.598%":[111],"highly":[113],"positive":[119],"0.001%":[122],"reported,":[123],"demonstrated":[127],"very":[128],"promising":[129],"potential":[130],"real":[132],"world":[133],"operations.":[135],"We":[136],"believe":[137],"effective":[142],"addressing":[144],"problem,":[148],"therefore":[150],"paves":[151],"way":[153],"consolidated":[156],"solution":[158],"network":[160],"at":[162],"enterprise":[164],"level.":[165]},"counts_by_year":[{"year":2026,"cited_by_count":6},{"year":2025,"cited_by_count":13},{"year":2024,"cited_by_count":17},{"year":2023,"cited_by_count":10},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":3}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-10-10T00:00:00"}
