We
distinguish
between
the
security
engines
having
to
address
various
levels
of
ICT-system
specific
security,
security
engines
working
together
to
correlate
events,
security
management
services
mastering
various
security
domains
and
security
service
provision
applications
providing
various
security
services.
The
engines
deal
with
specific
problems
identified
through
risk
assessment,
each
for
a
specific
field
of
security
and
together
for
the
various
assets
of
the
organization,
the
management
services
master
the
domains
identified
in
the
policy.
The
provision
services
are
needed
to
enable
protection.