<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Archiving and Interchange DTD v1.0 20120330//EN" "JATS-archivearticle1.dtd">
<article xmlns:xlink="http://www.w3.org/1999/xlink">
  <front>
    <journal-meta />
    <article-meta>
      <title-group>
        <article-title>Ontology-Based Approach to Validation of Learning Outcomes for Information Security Domain</article-title>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <string-name>© Julia Rogushina</string-name>
          <xref ref-type="aff" rid="aff1">1</xref>
        </contrib>
        <contrib contrib-type="author">
          <string-name>© Anatoly Gladun</string-name>
          <xref ref-type="aff" rid="aff2">2</xref>
        </contrib>
        <contrib contrib-type="author">
          <string-name>© Serhii Pryima</string-name>
          <email>pryima.serhii@gmail.com</email>
          <xref ref-type="aff" rid="aff0">0</xref>
        </contrib>
        <contrib contrib-type="author">
          <string-name>© Oksana Strokan</string-name>
          <email>oksana.strokan@tsatu.edu.ua</email>
          <xref ref-type="aff" rid="aff0">0</xref>
        </contrib>
        <aff id="aff0">
          <label>0</label>
          <institution>Dmytro Motornyi Tavria State Agrotechnological University</institution>
          ,
          <addr-line>Melitopol</addr-line>
          ,
          <country country="UA">Ukraine</country>
        </aff>
        <aff id="aff1">
          <label>1</label>
          <institution>Institute of Software systems of National Academy of Sciences of Ukraine</institution>
          ,
          <addr-line>Kyiv</addr-line>
          ,
          <country country="UA">Ukraine</country>
        </aff>
        <aff id="aff2">
          <label>2</label>
          <institution>International Research and Training Center of Information Technologies and Systems of National Academy of Sciences of Ukraine and Ministry of Education and Science of Ukraine</institution>
          ,
          <addr-line>Kyiv</addr-line>
          ,
          <country country="UA">Ukraine</country>
        </aff>
      </contrib-group>
      <fpage>21</fpage>
      <lpage>36</lpage>
      <abstract>
        <p>Validation of non-formal and informal learning results is an effective way to solve a number of socioeconomic problems in various spheres. Recognition of learning outcomes in dynamic domains requires the use of background knowledge acquired from open information resources. Need in such background knowledge causes the interest to ontological representation of learning domain and ontology-based methods of knowledge analysis. Now unstructured natural language texts constitute considerable part of the Web available content. The large data volume necessitates scalable means of analysis, and more efficient and rapid processing can be ensured through the use of task-specific thesauri based on domain ontologies. The approach proposed by the authors to recognize non-formal and informal learning outcomes is exemplified by information security domain. The referencing to this domain is determined by the heterogeneity and dynamics of its information sources, the complex hierarchy of knowledge as well as the growing need for information security specialists in the context of the digitalization of society.</p>
      </abstract>
      <kwd-group>
        <kwd>Ontology</kwd>
        <kwd>Information Security</kwd>
        <kwd>Validation of Learning Outcomes</kwd>
        <kwd>Non-Formal Learning</kwd>
        <kwd>In-Formal Learning</kwd>
        <kwd>Unstructured Data</kwd>
        <kwd>Big Data</kwd>
      </kwd-group>
    </article-meta>
  </front>
  <body>
    <sec id="sec-1">
      <title>Unstructured data analysis</title>
      <p>The rapid development and integration of various domains requires continual
updating of relevant professional knowledge and skills for labor mobility. Therefore we
need to analyze competence pertinence to new task types at all life activity stages of
individuals and organizations. In turn, such knowledge dynamism complicates the
learning outcomes determining in formal, non-formal and informal education.
Recognition of the non-formal and informal learning outcomes is increasingly seen as a way
to improve lifelong education for employment and life quality improving.</p>
      <p>European countries emphasize the visualization relevance for learning
organizes outside of official education institutions (at home, at work or leisure).</p>
      <p>This problem is very important for rapidly changing domains that integrate
different research activities. To work effectively in these areas, professionals need
lifelong learning, gaining experience and new learning outcomes. These features
apply equally to most of the information technologies. On conditions of digitalization it
is especially important for information security (IS) domain, since practically all
employees need now to have basic knowledge in IS for processing digital data without
their loss and disclosure.</p>
      <p>Individuals and organizations alike depend on the cyber world. As the world
becomes more connected through digital environment, a highly skilled information
security workforce is required to secure, protect, and defend global, national,
commercial and personal information. The IS strategies and development plans require the
know-how improvement of citizens, economic life actors and public administration.</p>
      <p>A lot of people who need in modern IS skills and knowledge can receive
them only from self-education. Therefore IS competence is not just another
professional field of expertise. Rather, it ranges from civic skills all the way to
internationallevel professions and should be included in different educational and institutional
levels.</p>
      <p>Validation of learning outcomes is a process that recognizes various learning
outcomes with the help of such steps as identification, documentation, assessment and
certification. Successful validation of learning outcomes is based on use of formalized
knowledge of the relevant subject domain: such knowledge is used to match learning
results obtained by individual with domain references.</p>
      <p>Now the validation problem of non-formal and informal learning outcomes
is complicated by the unstructured and unclear nature of many domains, such as IS. It
is difficult to clearly define the boundaries of each domain, because many professions
are located at the intersection of several industries or have unformalized
domainindependent requirements (such as response rate, stress resistance) and require
external knowledge from other fields. The problem solution requires the use of modern
methods for representation and analysis of knowledge that ensure the information
processing at the semantic level.</p>
      <p>In this paper we consider IS as an example of complex and dynamic domain
where the need to validate the results of non-formal and informal learning is very
actual but faces many theoretical and practical obstacles.
2</p>
    </sec>
    <sec id="sec-2">
      <title>Formulation of the problem</title>
      <p>
        Digitization of all life spheres of modern society [
        <xref ref-type="bibr" rid="ref1">1</xref>
        ] increases the need for relevant
information security means and awareness in this area for a wide variety of users and
developers of information technology. Therefore, a significant number of people have
gained knowledge in the process of self-study, i.e., by non-formal and informal
education in this field. Informality of this process and diversity of terminology used for
describing of such outcomes complicates to obtain formal definition of learning
results for employers for matching with clear criteria and requirements for job
responsibilities. This necessitates a reconciliation of domain terminology with knowledge
structures pertinent to current IS standards. But now the big number of standards and
examples deals with various IS aspects, new versions and editions appear frequently.
Therefor Big Data methods can be applied for tracking of all changes in this sphere.
      </p>
      <p>We suggest to harmonize a hierarchy of IS ontologies to define the terms of
this domain and construct thesaurus of IS. Each term of this thesaurus is associated
with one or more elements of these IS ontologies (concepts, relations etc.). Use of
this thesaurus allows describing various learning outcomes (by natural language (NL)
texts or by structured data) obtained by non-formal and informal learning, and
provides their comparison with formalized (or semi-formalized) descriptions of jobs and
tasks that arise in this field. Such IS thesaurus helps to take into consider the most
task-relevant domain knowledge. Time required for processing and construction of
thesaurus is much less than the time of matching of domain ontologies with
unstructured NL text, which is usually used to describe learning outcomes and vacancies.
Thus, the approach proposed in the work should ensure the transition from processing
of unstructured large-scale data to analysis of much more compactly represented
knowledge obtained from appropriate Big Data and from domain ontologies.
3</p>
    </sec>
    <sec id="sec-3">
      <title>Information Security Domain Specificity</title>
      <p>The current tendencies regarding the storage, exchange and processing of information
are characterized by the intensive implementation of information technologies, the
spread of local, corporate and global networks in all life spheres of the state and
individuals. This situation creates new opportunities for information exchange and
requires secure and safe information at the same time.</p>
      <p>The relevance of this problem is determined by the following factors:
- the exponential growth of personal computers, mobile devices and other
information exchange means;</p>
      <p>- rapid expansion of users with direct access to digital networks and
information resources;</p>
      <p>- an exponent volume growth of that is accumulated, stored and processed in
digital form;</p>
      <p>- spread of hardware, software and information technologies that do not
satisfy the current safety requirements;</p>
      <p>- discrepancy between the rapid development of information processing
facilities, the national laws of information security and the development of international
standards and legal norms that will provide the necessary level of information
protection;
- information war in and around the country caused by external aggression;
- cybercrime, sometimes of national importance, etc.</p>
      <p>IS deals with the protection of information systems, both hardware and
software, from theft, unauthorized access and disclosure, as well as from intentional or
accidental harm. IS has to protects all segments related to the Internet (from the
networks themselves to the information transmitted over the network) and stored in
databases, to the various applications and devices that control the operation of the
equipment through network connections.</p>
      <p>Today IS becomes a cornerstone in the activities of every organization or
individual. IS refers to the security of entire organization data against deliberate or
accidental actions that cause damage to its owners or users. IS domain is a very dynamic
sphere that requires constant monitoring of information coming from both internal
and external information resources.</p>
      <p>Information resources in IS are generated usually by different tools, sensors
and systems expressed using different standards and formats, published by different
sources and is often scattered as isolated pieces of information. Furthermore, cyber
security data are available in structured, semi-structured and unstructured forms from
both, internal sources i.e. within the organization, and external sources i.e. outside the
organization. Unifying such scattered information provides better visibility and
situational awareness to cyber security analysts.</p>
      <p>
        Now new terms in IS domain appears frequently, and old ones change the
meanings making it difficult to agree on different approaches to knowledge
representation about IS. In addition, documents (standards, protocols, descriptions) from the
IS are characterized by large volume and not structured form. Therefore, it is
advisable to use Big Data analytics methods – a new technology that enables the collection,
storage, processing and visualization applied for such data volumes. Such analytics
takes into account the basic Big Data characteristics [
        <xref ref-type="bibr" rid="ref2">2</xref>
        ].
      </p>
      <p>
        Specialized analytical methods extract useful information from distributed
data to obtain the information about the specialists` learning outcomes relevant to the
challenges in the IS field. Analytics Big Data can be used to make decisions in such
IS tasks [
        <xref ref-type="bibr" rid="ref3">3</xref>
        ].
      </p>
      <p>Big Data Analytics applied to IS data can provides insights useful to improve
current security practices of network operators and administrators. To use Big Data as
an external information source, we first need to filter out multiple datasets by
pertinence to task of analytics. Preliminary data cleaning and preparation for analysis can
be performed by metadata analysis (and quite often the analysis of the NL part of it,
for example, annotations) using the domain knowledge.</p>
      <p>
        It is advisable to treat some information as Big Data if it has one or more
characteristics from the "5V": Volume, Variety, Velocity, Value, Veracity [
        <xref ref-type="bibr" rid="ref4">4</xref>
        ]. Big
Data, also referred to as Data Intensive Technologies, now are becoming a new
technology trend in science, industry and business [
        <xref ref-type="bibr" rid="ref5">5</xref>
        ] . Big Data can be defined as a new
generation of technologies and architectures designed to economically extract value
from very large volumes of a wide variety of data by enabling high velocity capture,
discovery, and/or analysis.
      </p>
      <p>Now Big Data technology is applied in different human activity domains
empowered by significant growth of the computer power, ubiquitous availability of
computing and storage resources, increase of digital content production, mobility and
security. Each stage of the Big Data lifecycle provides the data transformation or
changes in processing of the dataset content. In many cases original data and
processed data are linked by referral integrity. This motivates such Big Data features as
dynamism and variability that reflect the fact that data are in constant change and may
have a definite state, besides commonly defined as data in move, in rest, or being
processed. Supporting these data properly will require scalable provenance models
and tools incorporating also data integrity and confidentiality.</p>
      <p>Problems of big data use for analytic in IS often are caused by the lack of
descriptions of metadata datasets. Re-use of data requires as much information as
possible about the origin of the data and about a complete history of the methods used to
collect, maintain and analyze. The availability of metadata increases the likelihood
that the datasets are reused correctly.</p>
      <p>Widespread Big Data used as a source of background IS knowledge need in
the scalability of methods that can be used to structuring and validation of learning
outcomes in this domain.
4</p>
    </sec>
    <sec id="sec-4">
      <title>Unstructured data in the IS domain</title>
      <p>Today, the major portion of cyber security data is represented by unstructured NL
data. Unstructured data (USD) is information that does not have a predefined model
of organization. This causes problems related to storage (traditional databases are not
designed for such uncertainty) and analysis. USD contain potentially the greatest
value as sources of new knowledge, and the total amount of such data influences on
accuracy of the analysis results.</p>
      <p>In many cases, USD are represented by textual information in electronic
form by sets of natural language words of arbitrary length, combined according to
weakly formalized linguistic rules. Such textual information contains the most useful
information for further use but USD may also contain dates, numbers, special
symbols etc.</p>
      <p>
        Sometimes it is difficult to distinguish between structured and unstructured
data. One of the criteria for determining whether data are structured is to create a
parser for the data element. USD as a term is not well defined for several reasons [
        <xref ref-type="bibr" rid="ref6">6</xref>
        ]:
- data contain the structure without it’s formal definition;
- data structure is not useful for processing purposes;
- information about data structure cannot be processed automatically without
further clarification.
      </p>
      <p>Data are considered as USD in cases where information about their structure
cannot make the analysis of these data more efficient. Therefore, for example,
standards for IS (both domestic and international) in terms of data analysis are considered
as USD, although they have certain structural elements.</p>
      <p>A lot of important cyber security information can be extracted from USD.
For example, various cyber security vulnerabilities are typically identified and
accessible publicly on the Web but at first not in official documents. It causes a strong need
for systems that can automatically analyze unstructured text and extract vulnerability
entities and concepts from various non-traditional unstructured data sources such as
cyber security blogs, security bulletins and hackers forums. Now there is no widely
used automatic mechanism to understand and process such USD with non-formalized
terminological base.</p>
      <p>Technologies such as Data Mining, Natural Language Processing, and Text
Mining provide different methods for structure acquisition for USD. Common text
structuring methods usually include manual tagging with metadata or other specific
tags for further structuring. The Unstructured Information Management Architecture
(UIMA) standard provides a general framework for processing this information to
acquire semantics and create structured data.</p>
      <p>
        The earliest Business Intelligence studies focused on unstructured text data,
not numerical data [
        <xref ref-type="bibr" rid="ref7">7</xref>
        ]. The development of Big Data in the late 2000s caused
increased interest in the use of USD analysis.
      </p>
      <p>Separating unstructured data analysis (UDA) into the separate scientific and
technical area dates back to the early 2000s, when Gartner analysts published
information about high time and labor involved in processing data because such routine,
non-automated content processing took up half the working time.</p>
      <p>Now data without formalized structure are the largest share of stored
digitized information (more than 80% of all stored data, and their number is increasing by
an order of magnitude faster than structured data), so methods and means of their use
are evolving rapidly. These methods are intended to transform USD into structured
information that can be used in various ways.</p>
      <p>
        Adding a structure to USD is a complex scientific problem that has been
paying attention to scientists for a long time [
        <xref ref-type="bibr" rid="ref8">8</xref>
        ]. In the most general form, the solution
of the problem is related to the construction of a spaced graph corresponding to the
USD content and to the comparison of such graphs generated for different USD sets.
Another aspect of this problem is related to the finding of relevant knowledge for
USD structuring tags and means of representation of such knowledge.
      </p>
      <p>
        Text Mining can be defined as the process of acquiring knowledge from
collections of USD documents using various toolkits for their analyzing [
        <xref ref-type="bibr" rid="ref9">9</xref>
        ]. Text Mining
can be considered as a separate case of Data Mining. Processing of NL data should
provide a transition from USD to structured ones with subsequent analysis. Most
often, this process ignores most of the specific features of the NL, which are used only
at the previous stage of parsing the texts, and in the following uses the "bag of words"
model, in which the word order is not difficult. Similar to Data Mining, Text Mining
tools seek to retrieve information relevant to user's activity. In the case of Text
Mining such templates that can be applied for user tasks should be found not in
formalized database records, but in non-structured text data in the documents of these
collections.
      </p>
      <p>
        An analysis of current research in this area demonstrates that the most
effective approaches to the analysis of NL data are based on the use of the background
knowledge of the corresponding domains formalized by ontology [
        <xref ref-type="bibr" rid="ref10">10</xref>
        ].
5
      </p>
    </sec>
    <sec id="sec-5">
      <title>Ontologies of IS domain</title>
      <p>Cyber security information needs to be machine-readable to enable efficient
information exchange, retrieval and operation automation deal with validation of learning
in this domain. Today, software development in the IS field is characterized by
intellectualization, which allows to anticipate the threats that can lead to APT (advanced
persistent threat) attacks, phishing and redemption software. Ontological
representation of knowledge is widely used now in distributed intelligent application oriented on
processing into the Web open environment to support knowledge sharing and
reutilization. Ontologies provide an explicit specification of a conceptualization. Therefore
creation of IS domain ontologies covered a set of concepts and categories of this
domain, their various properties and relationships between them is of great interest to
developers and users of modern IS means.</p>
      <p>
        Ontologies in IS have now evolved into an active provider of data element
links that can use machine learning and artificial intelligence algorithms to adapt to
changes in the environment [
        <xref ref-type="bibr" rid="ref11">11</xref>
        ]. Development of ontological model for entire IS
domain requires integration of existing ontologies and their refinement.
      </p>
      <p>
        The Unified Cyber Security Ontology (UCO) [
        <xref ref-type="bibr" rid="ref12">12</xref>
        ] is designed to support the
knowledge integration into IS systems and should unify the most commonly used
information security standards. This ontology integrates heterogeneous data and
knowledge schemas from different IS subsystems and the most commonly used IS
standards for data sharing. UCO can serve as the core of knowledge for the IS
domain. The UCO ontology has also been mapped to a number of existing cyber
security ontologies as well as concepts in the Linked Open Data cloud.
      </p>
      <p>UCO is an ontology developed for integration of the unifying information
from heterogeneous sources. This ontology supports reasoning and inferring new
information from existing information. UCO also provides capturing specialized
knowledge of a cyber security analyst expressed by ontology classes and individuals
as well as rules. UCO ontology provides a common understanding of cyber security
domain and unifies most commonly used cyber security standards.</p>
      <p>The most important top-level IS concepts represented by UCO classes:
- Means: various methods of attack executing
- Consequences: possible outcomes of attacks.
- Attack: cyber threat attacks.
- Attacker: identifications and characterization of the adversary.</p>
      <p>- AttackPattern: descriptions of common methods for exploiting software
that provide the attackers perspective and guidance on ways to mitigate their effect.
- Exploit: descriptions of individual exploits.</p>
      <p>- Exploit Target: weaknesses and vulnerabilities of software, systems,
networks or configurations that are targeted for exploitation by the TTP (cyber threat
adversary Tactic, Technique or Procedure).</p>
      <p>UCO ontology serves as the core for cyber security Linked Open Data
(LOD) cloud and integrates knowledge from some international sources but general
ontological model of IS has take into account various national IS standards and laws.</p>
      <p>
        A detailed description of knowledge about the IS domain requires the
development of an ontology hierarchy, ranging from the top level to the bottom one.
Toplevel fundamental ontology includes basic IS domain concepts, and low-level
ontologies describe the specific problem aspects with more exact detailing of features. An
interesting example of multilevel ontological system of cyber security is proposed in
[
        <xref ref-type="bibr" rid="ref13">13</xref>
        ]. This ontological framework CRATELO consists of three layers:
- top-level ontology designed on the SPRAY basis (simplified version of
DOLCE top ontology),
      </p>
      <p>- Security Core Ontology (SECCO) is a set of security concepts based on
DOLCE-SPRAY primitives,
- security-related middle-level ontologies of secure operations (OSCO).</p>
      <p>
        In [
        <xref ref-type="bibr" rid="ref14">14</xref>
        ] authors propose reference ontology for cyber security operational
information. IS in this approach is considered as the preservation of information
confidentiality, integrity and availability. This work takes into account a lot of ontologies
of cyber security domain that formalize knowledge organizing of IS risk management,
vulnerabilities, attackers, security metrics, countermeasures and other relevant
concepts [
        <xref ref-type="bibr" rid="ref15">15</xref>
        ]. Many middle-level ontologies were created in the field for representing the
various individual aspects of IS domain. For example, researchers developed
application ontologies to identify and classify network attacks:
- an ontology for distinguishing the state of network security [
        <xref ref-type="bibr" rid="ref16">16</xref>
        ];
- an ontology of intrusion detection [
        <xref ref-type="bibr" rid="ref17">17</xref>
        ];.
- an ontology for automated classification of network attacks [
        <xref ref-type="bibr" rid="ref18">18</xref>
        ].
- an ontology of prediction of potential network attacks [
        <xref ref-type="bibr" rid="ref19">19</xref>
        ].
      </p>
      <p>
        Other IS ontologies provide and enrich an adaptive vocabulary that can
improve behavioral analysis and help stop the spread of threats. As well terms for IS
ontologies can be obtained from the open sources, such as the dictionary of cyber
security terms [
        <xref ref-type="bibr" rid="ref21">21</xref>
        ] and the various standards of this domain. But processing of USD
with NL text requires special software and expert participation. Acquisition of
knowledge from NL documents that contain semantic markup (such as semantic Wiki
resources) is easier. Wiki pages correspond to domain concepts, and links between
them explicitly defined in content can be used to build ontological relations. For
example, we use the "Security systems" category pages of the portal of the Great
Ukrainian Encyclopedia (e-VUE) [
        <xref ref-type="bibr" rid="ref22">22</xref>
        ] and Ukrainian Wikipedia as information
sources of IS terms (Fig.2).
      </p>
      <p>Wiki markup can be based on existing IS ontologies. It is advisable to create such
Wiki pages for each IS standard in whole as well as for their separate subdivisions
and definitions. Thus, the semantic markup of NL information resources enables the
automated generation of IS ontologies.
6</p>
      <p>
        Use of IS
outcomes
ontological
models in
validation
of learning
The effective development of IS demands the determination of competence areas and
their contents, so as to make it possible to define learning outcomes for each level and
type of education [
        <xref ref-type="bibr" rid="ref23">23</xref>
        ]. Validation of learning outcomes can be realized by
ontologybased matching of results of informal learning with vacancies and task in relevant
domain.
      </p>
      <p>Terms and relations of domain ontology provide the semantic matching of
NL texts. At the level of ontological models, it is possible to correlate learning
outcomes, for example, the competencies of IS professionals who have acquired their
knowledge and skills in non-formal and informal learning. These people can describe
their learning outcomes in the same terms used by employers to describe the jobs and
tasks. The set of competencies is defined by domain specifics.</p>
      <p>
        We proposed to divide each learning result into the unique set of atomic
sults
learning results [
        <xref ref-type="bibr" rid="ref24">24</xref>
        ], and to establish the relation and hierarchy of learning outcomes
and qualifications through an appropriate ontology. Atomic learning outcomes
(atomic competencies) have the following properties:
      </p>
      <p>- a  C , where C is the set of information objects of the class "Learning
Outcomes", and Catomic - the set of atomic learning outcomes, C atom  C ;
;
- each learning outcome c ins an unique non-empty set of atomic learning
rec  Cai  Catomic , i  1, n, k  i1 ai</p>
      <p>- atomic learning outcomes are not a subset of other learning outcomes
a, b  C, a  b  b  Catomic .</p>
      <p>In order to relate the learning results to the domain terminology we define
for each a  C the terms xi  X , i  1, n, n  1 and relations xia  rj ( xib ) from the
domain ontology (in this case, from one of the ontologies included into hierarchy of
IS ontological model). Learning outcomes without such ontological correspondences
cannot used (if IS ontologies does not contain an appropriate terms for important
learning outcomes then we have to expand IS ontology by appropriate terms).</p>
      <p>Thus, the matching of individual learning outcomes with task requirements
is executed on semantic level by comparison of finite sets of atomic learning
outcomes defined in domain terms. Therefore, the time of comparison is linear
proportional to the number of atomic learning outcomes, and each atomic learning outcome
is a finite unique nonempty set of domain terms.</p>
      <p>Use of such atomic learning outcomes requires in generation of domain
thesauri that are simpler then ontologies but contain all domain terms deal with some
specific task (for example, some job definition).
7</p>
    </sec>
    <sec id="sec-6">
      <title>Generation of IS thesauri based on domain ontologies</title>
      <p>
        Thesaurus approach is widely used for analysis of domain term systems. Domain
models based on thesauri can be used to generate domain representations assisted by
computers with the help of integrated combination of different kinds of techniques
from computing, statistics and artificial intelligence [
        <xref ref-type="bibr" rid="ref25">25</xref>
        ]. Some methods of thesauri
generation use domain ontologies as a knowledge source and integrate thesaurus with
current task description.
      </p>
      <p>
        In [
        <xref ref-type="bibr" rid="ref26">26</xref>
        ] researchers propose to use thesaurus approach to formalize IS domain
terminology. IS thesaurus displays a wide range of essential properties, attributes and
relationships that are inherent in this specific type of security. Another example of IS
thesaurus is described in [
        <xref ref-type="bibr" rid="ref27">27</xref>
        ]. This thesaurus integrates the concepts of cybersecurity,
data security, application security, network security, Web security, and critical
information infrastructure security.
      </p>
      <p>Application security is determined by the application software as well as by
the software resources and processes involved in their lifecycle. Network security is
related to the design, implementation and use of networks within the organization,
between organizations, between organizations and users. Web security refers to Web
services and related information and communication systems and networks. Security
of critical information infrastructure is characterized by protection against relevant
threats, in particular information security.</p>
      <p>
        Researchers [
        <xref ref-type="bibr" rid="ref28">28</xref>
        ] distinguish three groups of IS terms:
1. Terms defining the scientific basis of IS. This group includes terms used
in many fields of knowledge that are unambiguous, semantically unified, and
stylistically neutral. Examples: information, communication, conflict, influence, threat,
danger, security, system. The concepts in this group meet the requirements of uniqueness
and stability, i.e. they are uniquely applied in one area of knowledge and retain
content in any other. This group of terms corresponds with the top-level ontologies.
      </p>
      <p>2. Terms defining the subject basis of IS. This group of terms refers to
concepts and their relation to other concepts within information security as a specific area
of knowledge. This group of terms corresponds with the middle-level ontologies of
IS.</p>
      <p>3. Terms defining the nature of IS activities. This group covers terms
denoting objects, phenomena, processes, their properties and relationships that are
characteristic of this field. This group of terms corresponds with the low-level ontologies of
special subspheres of IS.</p>
      <p>IS thesaurus oriented on processing NL texts deal with learning outcomes in
IS has to contain terms from all categories if they are used into the task description
(here task is a NL description of work or problem that employer proposes to
specialists with appropriate competencies).</p>
      <p>
        We define task thesaurus as a special case of domain ontology oriented on
analyses of NL texts. Thesaurus contains only ontological terms (classes and
instances) but does not describe the semantics of relations between them. It can be
automatically generated on base of the domain ontology and NL description of the problem
[
        <xref ref-type="bibr" rid="ref29">29</xref>
        ].
      </p>
      <p>A simple task thesaurus is a task thesaurus based on the terms of a single
ontology. A composite task thesaurus is a task thesaurus that is based on the terms of
two or more domain ontologies. It should be noted that IS domain is very dynamic,
and therefore there is a problem in keeping the terminological base of the current state
of research works and their integration with the modern grammar of the Ukrainian
language.
8</p>
    </sec>
    <sec id="sec-7">
      <title>An algorithm for constructing of task thesaurus</title>
      <p>
        A simple task thesaurus is constructed according to the user-selected domain ontology
and task – the description of the current problem (Fig. 3). This algorithm is described
in detail in [
        <xref ref-type="bibr" rid="ref30">30</xref>
        ].
      </p>
      <p>The task description can be represented via NL text that contains elements related
to the ontology elements, or through conditions for domain terms relevant to the task.
Thesaurus constructing consists from two main steps:</p>
      <p>Step 1. Automated generation of a simple task thesaurus by task description;
Step 2. Expansion of a simple thesaurus by other ontology concepts by the
set of conditions that use elements of the O ontology different from instances and
classes.</p>
      <sec id="sec-7-1">
        <title>Domain ontology</title>
      </sec>
      <sec id="sec-7-2">
        <title>Lexic Domain ontology</title>
      </sec>
      <sec id="sec-7-3">
        <title>Linguistic KB</title>
      </sec>
      <sec id="sec-7-4">
        <title>NL-description of task Z</title>
      </sec>
      <sec id="sec-7-5">
        <title>Domain thesaurus</title>
        <sec id="sec-7-5-1">
          <title>Esquire set of terms Х from ontology О</title>
          <p>Step 1.1.</p>
          <p>Select subset T</p>
          <p>from X</p>
          <p>Step 1.2.</p>
          <p>Find NL text fragments
corresponded to terms of T
from Z and add them to T</p>
          <p>Step 2.</p>
          <p>Use properties of elements
from O for construction of T
Т satisfies</p>
          <p>user
-
Т satisfies
user
+
+</p>
        </sec>
        <sec id="sec-7-5-2">
          <title>Propose thesaurus T to user</title>
          <p>We divide step 1 into two substeps. On Step 1.1 user explicitly and manually
selects task-pertinent terms from the automatically generated list of classes and
instance X. In the simplest cases, the construction of the thesaurus may be completed in
this step, but it requires more efforts from the user.</p>
          <p>Stage 1.2 uses a variety of methods for processing a natural-language task
description (linguistic analysis, statistical processing, semantic markup analysis) that
allow detecting NL fragments related to terms from O.</p>
          <p>Those ontological terms that correspond to some fragments of task
description are added to the simple task thesaurus.</p>
          <p>Linguistic knowledge bases (KB) can be used to construct a thesaurus. We
can use specific domain-oriented linguistic KBs if a large amount of lexical
information has already accumulated. Such information is not universal and depends either
from domain and natural language used in task definition.</p>
          <p>Therefore we cannot use Text Mining systems – they often are oriented on
processing only English texts. We apply direct updating of the domain lexical
ontology by users and export linguistic knowledge from relevant vocabularies and
knowledge bases, as well as from semantically marked Ukrainian texts.</p>
          <p>In many cases, information about other elements of the ontology is
appropriate in thesaurus constructing. This information allows taking into account the
properties of individual terms and their relations with other terms.</p>
          <p>Such actions are applied on step 2 for refining the initially formed thesaurus
in accordance with explicitly formulated user conditions. These conditions depend
from the specific nature of the task, but are not derived from its description. Such
conditions can be considered as a set of meta-rules to describe the information the
user is seeking.</p>
          <p>Stage 2 can be represented as a function that transforms the O ontology into
simple task thesaurus according to proposed meta-rules deal with the finite set of
conditions that the user formulates for classes and instances of domain ontology.</p>
          <p>Complex task thesauri are generated from the built earlier task thesauri
(simple or complex) with the help of set theory operations such as sum of sets, intersection
of sets etc.
9</p>
        </sec>
      </sec>
    </sec>
    <sec id="sec-8">
      <title>Use of task thesauri for validation of learning outcomes</title>
      <p>Task thesauri can be used in various intelligent tasks. For example, such thesauruses
can be very useful to validate learning outcomes that are represented by NL
unstructured text. The main requirement of such approach is an ontological model of learning
domain. As we describe above, complex and dynamic IS domain has a lot of
ontological representations of its various aspects. Therefore we can apply this approach to
problem of learning outcomes validation for IS.</p>
      <p>Processing of task thesauri for learning outcomes validation consists of such
main steps:</p>
      <p>Step 1. Task thesaurus is generated by processing of NL job descriptions
received from employers (vacancy description, set of requirements for a specific
position or qualification etc.). Thesaurus consists of concepts used in this description.</p>
      <p>Step 2. The pertinent set of IS ontologies is generated by retrieval in the
Web and ontology repositories. Thesaurus concepts are used as search keyword.</p>
      <p>Step 3. We retrieve in the NL descriptions of the learning outcomes not all IS
domain concepts but only those that are included in the task thesaurus. This greatly
speeds up the comparison because IS ontological model in general contains a great
number of concepts and their NL representations.</p>
      <p>Descriptions are sufficient for to matching procedure if they contain all the
necessary concepts of ontology. It is important that thesauri allow us to group
synonyms or words represented by different NL, thus matching all semantically similar
terms.</p>
      <p>Step 4. If any learning outcome completely matches with job description
then we try to find descriptions of the learning outcomes that are most similar to the
task description.
10</p>
    </sec>
    <sec id="sec-9">
      <title>Acknowledgement</title>
      <p>In this research work we use scientific results obtained from Information programs of
the NASU «Development of dataware, functional support and software of electronic
version of encyclopedic editions of Ukraine» project (2019) in Institute of Software
Systems of NASU and from the work fulfilled in accordance with the thematic plan of
scientific researches of the Dmytro Motornyi Tavria State Agrotechnological
University (project of applied research at the expense of the state budget expenditures
«Theoretical substantiation and development of information system of semantic
identification, documentation and processing of results of non-formal and informal learning»).
11</p>
    </sec>
    <sec id="sec-10">
      <title>Conclusions</title>
      <p>IS industry is a dynamic field that is rapidly changing and improving specific methods
and tools. Therefore, cybersecurity-related specialists require actual knowledge
arrival, both from internal and external sources. This necessity enhances the non-formal
and informal learning importance in this field for the effective accomplishment of
various tasks.</p>
      <p>The complex hierarchical structure of IS domain knowledge necessitate the
ontological analysis use to the data processing. IS domain ontological model contains
knowledge conceptualization, integrates heterogeneous data structures and knowledge
from different IS subsystems, as well as national and international standards.
Ontologies provide formalization of the relations between domain elements and support their
automated processing.</p>
      <p>Unstructured and large-volume information causes the application of Big
Data analytic techniques in preliminary processing of data sources used for generation
of IS ontological model. Then this model can be used for Big Data metadata
matching with various task areas.</p>
      <p>The authors propose to use task thesauri based on appropriate ontologies as a
tool for matching the informalized results of IS specialists learning outcomes with
task descriptions. These thesauri provide a terminological basis for the integration of
IS ontologies of various abstraction levels. Thesauri use reduces the comparing
computational complexity of heterogeneous knowledge structures.</p>
    </sec>
  </body>
  <back>
    <ref-list>
      <ref id="ref1">
        <mixed-citation>
          1.
          <string-name>
            <surname>Parviainen</surname>
            ,
            <given-names>P.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Tihinen</surname>
            ,
            <given-names>M.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Kääriäinen</surname>
            ,
            <given-names>J.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Teppola</surname>
            ,
            <given-names>S.</given-names>
          </string-name>
          :
          <article-title>Tackling the digitalization challenge: How to benefit from digitization in practice</article-title>
          .
          <source>In: International Journal of Information Systems and Project Management</source>
          ,
          <volume>5</volume>
          (
          <issue>1</issue>
          ), pp.
          <fpage>63</fpage>
          -
          <lpage>77</lpage>
          .(
          <year>2017</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref2">
        <mixed-citation>
          2.
          <string-name>
            <surname>Grimes</surname>
            <given-names>S.</given-names>
          </string-name>
          :
          <article-title>Unstructured Data and the 80 Percent Rule</article-title>
          , Clarabridge, Bridgepoints, (
          <year>2008</year>
          ), http://breakthroughanalysis.com/
          <year>2008</year>
          /08/01 / unstructured
          <article-title>-data-and-</article-title>
          <string-name>
            <surname>the -</surname>
          </string-name>
          80
          <string-name>
            <surname>-</surname>
          </string-name>
          percent-rule /.
        </mixed-citation>
      </ref>
      <ref id="ref3">
        <mixed-citation>
          3.
          <string-name>
            <surname>Savas</surname>
            <given-names>O.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Deng</surname>
            <given-names>J</given-names>
          </string-name>
          .:
          <article-title>Big Data Analytics in Cybersecurity In:</article-title>
          CRC Press, .-
          <fpage>353p</fpage>
          . (
          <year>2018</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref4">
        <mixed-citation>
          4. Zhang,
          <string-name>
            <given-names>Y.</given-names>
            ,
            <surname>Ren</surname>
          </string-name>
          ,
          <string-name>
            <surname>J.</surname>
          </string-name>
          , Liu,
          <string-name>
            <given-names>J.</given-names>
            ,
            <surname>Xu</surname>
          </string-name>
          ,
          <string-name>
            <given-names>C.</given-names>
            ,
            <surname>Guo</surname>
          </string-name>
          ,
          <string-name>
            <surname>H.</surname>
          </string-name>
          , Liu,
          <string-name>
            <surname>Y.</surname>
          </string-name>
          :
          <article-title>A survey on emerging computing paradigms for big data</article-title>
          .
          <source>In: Chinese Journal of Electronics</source>
          ,
          <volume>26</volume>
          (
          <issue>1</issue>
          ), pp.
          <fpage>1</fpage>
          -
          <lpage>12</lpage>
          , (
          <year>2017</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref5">
        <mixed-citation>
          5.
          <string-name>
            <surname>Demchenko</surname>
            ,
            <given-names>Y.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>De Laat</surname>
            ,
            <given-names>C.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Membrey</surname>
            ,
            <given-names>P.</given-names>
          </string-name>
          :
          <article-title>Defining architecture components of the Big Data Ecosystem</article-title>
          .
          <source>In: 2014 International Conference on Collaboration Technologies and Systems (CTS)</source>
          , pp.
          <fpage>104</fpage>
          -
          <lpage>112</lpage>
          , (
          <year>2014</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref6">
        <mixed-citation>6. Unstructured_data. - https://en.wikipedia.org/ wiki / Unstructured_data.</mixed-citation>
      </ref>
      <ref id="ref7">
        <mixed-citation>
          7.
          <string-name>
            <surname>Grimes</surname>
            <given-names>S.:</given-names>
          </string-name>
          <article-title>A Brief History of Text Analytics</article-title>
          .
          <string-name>
            <given-names>B Eye</given-names>
            <surname>Network</surname>
          </string-name>
          , (
          <year>2016</year>
          ), http://www.b-eyenetwork.com/view/6311.
        </mixed-citation>
      </ref>
      <ref id="ref8">
        <mixed-citation>
          8.
          <string-name>
            <surname>Buneman</surname>
            <given-names>P.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Davidson</surname>
            <given-names>S.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Fernandez</surname>
            <given-names>M.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Suciu</surname>
            <given-names>D.</given-names>
          </string-name>
          <article-title>Adding structure to unstructured data</article-title>
          .
          <source>In: International Conference on Database Theory</source>
          , pp.
          <fpage>336</fpage>
          -
          <lpage>350</lpage>
          , (
          <year>1997</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref9">
        <mixed-citation>
          9.
          <string-name>
            <surname>Feldman</surname>
            <given-names>R.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Sanger</surname>
            ,
            <given-names>J.:</given-names>
          </string-name>
          <article-title>The text mining handbook: advanced approaches in analyzing unstructured data</article-title>
          . In: Cambridge university press, (
          <year>2007</year>
          ), https://wtlab.um.ac.ir/images/elibrary/text_mining/
          <source>The%20Text%20Mining%20HandBook.pdf.</source>
        </mixed-citation>
      </ref>
      <ref id="ref10">
        <mixed-citation>
          10.
          <string-name>
            <surname>Rogushina</surname>
          </string-name>
          J.:
          <article-title>Means and methods of unstructured data analysis</article-title>
          .
          <source>In: Problems in Programming, N 1</source>
          , pp.
          <fpage>57</fpage>
          -
          <lpage>77</lpage>
          , (
          <year>2019</year>
          ), http://pp.
          <fpage>isofts</fpage>
          .kiev.ua/ojs1/article/view/348/346. (in Ukrainian).
        </mixed-citation>
      </ref>
      <ref id="ref11">
        <mixed-citation>
          11.
          <string-name>
            <surname>Obrst</surname>
            ,
            <given-names>L.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Chase</surname>
            ,
            <given-names>P.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Markeloff</surname>
          </string-name>
          , R.:
          <article-title>Developing an Ontology of the Cyber Security Domain</article-title>
          . In: STIDS, pp.
          <fpage>49</fpage>
          -
          <lpage>56</lpage>
          , (
          <year>2012</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref12">
        <mixed-citation>
          12.
          <string-name>
            <surname>Syed</surname>
            ,
            <given-names>Z.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Padia</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Finin</surname>
            ,
            <given-names>T.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Mathews</surname>
            ,
            <given-names>L.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Joshi</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          :
          <article-title>UCO: A unified cybersecurity ontology</article-title>
          .
          <source>In: The Workshops at the Thirtieth AAAI Conference on Artificial Intelligence</source>
          . (
          <year>2016</year>
          ), https://www.aaai.org/ocs/index.php/WS/AAAIW16/paper/download/12574/12365.
        </mixed-citation>
      </ref>
      <ref id="ref13">
        <mixed-citation>
          13.
          <string-name>
            <surname>Oltramari</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Cranor</surname>
            ,
            <given-names>L. F.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Walls</surname>
            ,
            <given-names>R. J.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>McDaniel</surname>
            ,
            <given-names>P. D.</given-names>
          </string-name>
          :
          <article-title>Building an Ontology of Cyber Security</article-title>
          . In: STIDS, pp.
          <fpage>54</fpage>
          -
          <lpage>61</lpage>
          , (
          <year>2014</year>
          ), http://citeseerx.ist.psu.edu/viewdoc/download?doi
          <source>=10.1.1.664.3593&amp;rep=rep1&amp;type=pdf.</source>
        </mixed-citation>
      </ref>
      <ref id="ref14">
        <mixed-citation>
          14.
          <string-name>
            <surname>Takahashi</surname>
            ,
            <given-names>T.</given-names>
          </string-name>
          , &amp;
          <string-name>
            <surname>Kadobayashi</surname>
            ,
            <given-names>Y.</given-names>
          </string-name>
          :
          <article-title>Reference ontology for cybersecurity operational information</article-title>
          .
          <source>In: The Computer Journal</source>
          ,
          <volume>58</volume>
          (
          <issue>10</issue>
          ), pp.
          <fpage>2297</fpage>
          -
          <lpage>2312</lpage>
          , (
          <year>2015</year>
          ), https://ieeexplore.ieee.org/stamp/stamp.jsp?arnumber=
          <fpage>8205615</fpage>
        </mixed-citation>
      </ref>
      <ref id="ref15">
        <mixed-citation>
          15.
          <string-name>
            <surname>Wang</surname>
            ,
            <given-names>J.A.</given-names>
          </string-name>
          and
          <string-name>
            <surname>Guo</surname>
            ,
            <given-names>M.:</given-names>
          </string-name>
          <article-title>OVM: An Ontology for Vulnerability Management</article-title>
          .
          <source>In: Proc. 5th Annual Workshop on Cyber Security and Information Intelligence Research</source>
          , pp.
          <fpage>1</fpage>
          -
          <lpage>4</lpage>
          , (
          <year>2009</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref16">
        <mixed-citation>
          16.
          <string-name>
            <surname>Bhandari</surname>
            ,
            <given-names>P.</given-names>
          </string-name>
          and
          <string-name>
            <surname>Guiral</surname>
            ,
            <given-names>M.S.</given-names>
          </string-name>
          :
          <article-title>Ontology Based Approach for Perception of Network Security State</article-title>
          .
          <source>In: Recent Advances in Engineering and Computational Sciences (RAECS)</source>
          , pp.
          <fpage>1</fpage>
          -
          <lpage>6</lpage>
          , (
          <year>2014</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref17">
        <mixed-citation>
          17.
          <string-name>
            <surname>Ye</surname>
            ,
            <given-names>D.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Bai</surname>
            ,
            <given-names>Q.</given-names>
          </string-name>
          , Zhang,
          <string-name>
            <given-names>M.</given-names>
            ,
            <surname>Ye</surname>
          </string-name>
          ,
          <string-name>
            <surname>Z.</surname>
          </string-name>
          :
          <article-title>P2P distributed intrusion detections by using mobile agents</article-title>
          .
          <source>In: Seventh IEEE/ACIS International Conference on Computer and Information Science (ICIS 08)</source>
          , pp.
          <fpage>259</fpage>
          -
          <lpage>265</lpage>
          , (
          <year>2008</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref18">
        <mixed-citation>
          18. van Heerden,
          <string-name>
            <given-names>R.</given-names>
            ,
            <surname>Leenen</surname>
          </string-name>
          ,
          <string-name>
            <given-names>L.</given-names>
            ,
            <surname>Irwin</surname>
          </string-name>
          ,
          <string-name>
            <surname>B.</surname>
          </string-name>
          :
          <article-title>Automated classification of computer network attacks</article-title>
          .
          <source>In: International Conference on Adaptive Science and Technology (ICAST</source>
          <year>2013</year>
          ), pp.
          <fpage>157</fpage>
          -
          <lpage>163</lpage>
          , (
          <year>2013</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref19">
        <mixed-citation>
          19.
          <string-name>
            <surname>Salahi</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          <string-name>
            <surname>Ansarinia</surname>
            ,
            <given-names>M.</given-names>
          </string-name>
          :
          <string-name>
            <surname>Predicting Network Attacks Using Ontology-Driven</surname>
            <given-names>Inference</given-names>
          </string-name>
          , (
          <year>2011</year>
          ), http://arxiv.org/ftp/arxiv/papers/1304/1304.0913.pdf.
        </mixed-citation>
      </ref>
      <ref id="ref20">
        <mixed-citation>
          20.
          <string-name>
            <surname>Motik</surname>
            ,
            <given-names>B.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Patel-Schneider</surname>
            ,
            <given-names>P. F.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Parsia</surname>
            ,
            <given-names>B.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Bock</surname>
            ,
            <given-names>C.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Fokoue</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Haase</surname>
            ,
            <given-names>P.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Smith</surname>
            ,
            <given-names>M.:</given-names>
          </string-name>
          <article-title>OWL 2 web ontology language: Structural specification and functional-style syntax</article-title>
          .
          <source>In: W3C recommendation</source>
          , (
          <year>2009</year>
          ), www.w3.org/2007/OWL/draft/ED-owl2
          <string-name>
            <surname>-</surname>
          </string-name>
          syntax-20090914/
        </mixed-citation>
      </ref>
      <ref id="ref21">
        <mixed-citation>
          21.
          <string-name>
            <surname>Gladun</surname>
            <given-names>A.Y.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Puchkov</surname>
            <given-names>O.O.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Subach</surname>
            <given-names>I.Y.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Khala</surname>
            <given-names>K.O.</given-names>
          </string-name>
          :
          <article-title>English-Ukrainian Dictionary of Information Technology and Cybersecurity Terms</article-title>
          . In:
          <string-name>
            <surname>Igor Sikorsky</surname>
            <given-names>KPI</given-names>
          </string-name>
          , P.
          <volume>376</volume>
          , (
          <year>2018</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref22">
        <mixed-citation>
          22.
          <string-name>
            <surname>Rogushina</surname>
          </string-name>
          J.:
          <article-title>Processing of Wiki Resource Semantics on the Base of Ontological Analysis</article-title>
          .
          <source>In: Proc.of OSTIS-2018</source>
          , pp.
          <fpage>159</fpage>
          -
          <lpage>162</lpage>
          , (
          <year>2018</year>
          ), https://libeldoc.bsuir.by/ bitstream / 123456789/30389/1 / Rogushina_Processing.PDF.
        </mixed-citation>
      </ref>
      <ref id="ref23">
        <mixed-citation>
          23.
          <string-name>
            <surname>Lehto</surname>
            ,
            <given-names>M.</given-names>
          </string-name>
          :
          <article-title>Cyber security competencies: cyber security education and research in Finnish universities</article-title>
          .
          <source>In: ECCWS2015-Proceedings of the 14th European Conference on Cyber Warfare &amp; Security: ECCWS</source>
          <year>2015</year>
          , pp.
          <fpage>179</fpage>
          -
          <lpage>88</lpage>
          , (
          <year>2015</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref24">
        <mixed-citation>
          24.
          <string-name>
            <surname>Rogushina</surname>
            <given-names>J.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Priyma</surname>
            <given-names>S.</given-names>
          </string-name>
          :
          <article-title>Use of competence ontological model for matching qualifications</article-title>
          .
          <source>In: Chemistry: Bulgarian Journal of Science Education</source>
          , Volume
          <volume>26</volume>
          , Number 2, pp.
          <fpage>216</fpage>
          -
          <lpage>228</lpage>
          , (
          <year>2017</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref25">
        <mixed-citation>
          25.
          <string-name>
            <surname>Lloréns</surname>
            ,
            <given-names>J.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Velasco</surname>
          </string-name>
          , M.,
          <string-name>
            <surname>de Amescua</surname>
            ,
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Moreiro</surname>
            ,
            <given-names>J. A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Martínez</surname>
            ,
            <given-names>V.</given-names>
          </string-name>
          :
          <article-title>Automatic generation of domain representations using thesaurus structures</article-title>
          .
          <source>In: Journal of the American Society for Information Science and Technology</source>
          ,
          <volume>55</volume>
          (
          <issue>10</issue>
          ), pp.
          <fpage>846</fpage>
          -
          <lpage>858</lpage>
          , (
          <year>2004</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref26">
        <mixed-citation>
          26.
          <string-name>
            <given-names>Sachuk</given-names>
            <surname>Yu</surname>
          </string-name>
          .E.:
          <article-title>Training of cybersecurity and information security professionals: thesaurus and ontology</article-title>
          . In: Problems of Engineering and Pedagogical Education,
          <source>N 59</source>
          , pp.
          <fpage>35</fpage>
          -
          <lpage>40</lpage>
          , (
          <year>2018</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref27">
        <mixed-citation>
          27.
          <string-name>
            <surname>Kalichensky</surname>
            <given-names>A.</given-names>
          </string-name>
          :
          <article-title>The Concept of Creating the National Information and Communication Infrastructure of Ukraine</article-title>
          . In: Regional Forum MSE (
          <year>2012</year>
          ) https://www.itu.int/ITU-D/tech /events/2012/Spectrum_CIS_Kiev_Sept12/Presentations/Session2/A_Kalichensky _a.pdf.
        </mixed-citation>
      </ref>
      <ref id="ref28">
        <mixed-citation>
          28.
          <string-name>
            <surname>Diorditsa</surname>
            <given-names>I.V.</given-names>
          </string-name>
          :
          <article-title>The presentation of the terminology of cybersecurity policy in the texts of regulatory acts of Ukraine</article-title>
          . In: Scientific Bulletin of the International Humanities University. Jurisprudence Series, N
          <volume>29</volume>
          (
          <issue>1</issue>
          ), pp.
          <fpage>64</fpage>
          -
          <lpage>67</lpage>
          , (
          <year>2017</year>
          ).
        </mixed-citation>
      </ref>
      <ref id="ref29">
        <mixed-citation>
          29.
          <string-name>
            <surname>Gladun</surname>
            <given-names>A.</given-names>
          </string-name>
          ,
          <string-name>
            <surname>Rogushina</surname>
            <given-names>J</given-names>
          </string-name>
          .:
          <article-title>Use of Semantic Web Technologies and Multilinguistic Thesauri for Knowledge-Based Access to Biomedical Resources</article-title>
          .
          <source>In: International Journal of Intelligent Systems and Applications</source>
          , №1,
          <string-name>
            <surname>P.</surname>
          </string-name>
          11-
          <fpage>20</fpage>
          , (
          <year>2012</year>
          ), http://www.mecspress.org/ijisa/ijisa-v4
          <article-title>-n1/IJISA-V4-N1-2</article-title>
          .pdf.
        </mixed-citation>
      </ref>
      <ref id="ref30">
        <mixed-citation>
          30.
          <string-name>
            <given-names>Rogushina</given-names>
            <surname>Yu</surname>
          </string-name>
          .V.
          <article-title>Use of Thesauri for Search of Complex Information Objects in the Web on Base of Ontologies</article-title>
          . In: Problems in Programming,
          <source>No. 4</source>
          , pp.
          <fpage>11</fpage>
          -
          <lpage>27</lpage>
          . (
          <year>2019</year>
          )
          <article-title>(in Ukrainian)</article-title>
          .
        </mixed-citation>
      </ref>
    </ref-list>
  </back>
</article>