Abstract
In this paper, authors propose a complex of correlation-based methods for security incidents detection and investigation in large-scale networks of heterogeneous devices such as Internet of Things. Proposed methods aim to detect both known and unknown attacks in the Internet of Things.