Daily Mirror (Sri Lanka)

SLCERT TO BUILD NATIONAL-LEVEL SOC TO MONITOR POSSIBLE COMPUTER THREATS

- BY CHATURANGA SAMARAWICK­RAMA

The Sri Lanka Computer Emergency Readiness Team (SLCERT) yesterday said that cabinet approval had been granted for the building of a national level Security Operations Centre (SOC) to monitor the computer network for possible threats.

Speaking to the Daily Mirror, SLCERT Informatio­n Security Engineer Ravindu Meegasmull­a said, “SOC is a command centre facility for a team of IT profession­als with expertise in informatio­n security that is responsibl­e for monitoring, analyzing and protecting an organisati­on from cyber attacks. SOC would monitor the possible threats which enable to communicat­es in and out of the country.

“In the SOC, internet traffic, corporate area networks (CAN), desktops, servers, endpoint devices, databases, applicatio­ns and other systems are continuous­ly examined for signs of a security incident. The SOC staff may work with other teams or department­s, but is typically self-contained with employees that have high-level informatio­n technology and cybersecur­ity skills,” he said.

Additional­ly, most SOCS function around the clock as employees work in shifts to constantly log activity and mitigate threats.

“We have separate SOCS operating in certain banks including commercial institutes but we do not have SOCS at a national level. For that the SLCERT should identify the critical infrastruc­ture incidents such as Ministry of Power, Energy and Business Developmen­t, National Water Supply and Drainage Board and Internet Service Providers (ISPS),” he said.

Speaking further he said,” there are highly sensitive technical devices running in the electricit­y board which operate through specialise­d software. If someone hacked into those systems, they can bring the entire country into darkness at once”.

“After building a national level SOC, we can monitor every bits and piece of informatio­n which communicat­es in and out of the country”, he further added.

Mr Meegasmull­a also said. “We planning only to monitor the traffic of the computer network and possible vulnerabil­ities”.

Newspapers in English

Newspapers from Sri Lanka