The paper presents the Attack Countermeasure Tree (ACT), a new paradigm that incorporates a split-protocol to enhance system resilience against security attacks. By analyzing the split-protocol architecture, it shows how splitting the HTTP/TCP protocol between connection handling and data transfer can improve availability and security. The study compares various configurations and emphasizes the effectiveness of integrating countermeasures at multiple levels within the ACT framework.